
MSSQLand
In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit


PoC for CVE-2025-8110: Authenticated RCE in Gogs via symlink bypass in PutContents API

Exploits targeting vBulletin.

WAC RCE - CVE-2026-26119 Windows Admin Center authenticated RCE via WinREST/PowerShell invokeCommand.

load-scripts.php file, which purpose is to retrieve several JavaScript packages through one single request.

Demonstrates CVE-2023-41080, an open redirect in Apache Tomcat, comparing vulnerable and patched endpoints to show arbitrary site redirection.