
cve_2026_31431_audit
A security auditing toolkit for CVE-2026-31431 vulnerability research

A security auditing toolkit for CVE-2026-31431 vulnerability research

Automated exploit script for CVE-2023-42793 targeting TeamCity, enabling token manipulation and admin user creation for penetration testing.

Proof-of-concept exploit for CVE-2026-23744, demonstrating unauthenticated remote code execution in MCPJam Inspector versions up to 1.4.2 via crafted…

Proof-of-concept exploit for CVE-2023-22527, a server-side template injection in Confluence that enables remote code execution. Includes a Python…

cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

Public writeup, PoC, and emulation materials for CVE-2026-8508 affecting Zyxel captive-portal social login.

A script that helps you understand why your E-Mail ended up in Spam

Enhanced version of secretsdump.py from Impacket. Adds multi-threading and accepts an input file with a list of target hosts for simultaneous secrets…

A powerful shell script for creating custom WSL (Windows Subsystem for Linux) distributions with embedded payloads.

Script Bash -- CVE-2021-3560

psexecsvc - a python implementation of PSExec's native service implementation

This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.

Python script to exploit a privilege escalation vulnerability in the WP REST API FNS WordPress plugin, allowing unauthenticated creation of…

Proof-of-concept exploit for CVE-2020-6519 - a Chromium zero-day that fully bypasses Content Security Policy (CSP) across platforms, enabling script…

Ivanti Neurons for ITSM (On Premise) exploits

Simple shell script to automatically request new Tor identity at configurable intervals for IP rotation.

User Registration & Membership <= 5.1.2 - Unauthenticated Privilege Escalation via Membership Registration

Unauthenticated Privilege | Unauthenticated Arbitrary File Upload