
tiktok-scraper
Scrape and download TikTok video posts and metadata from user profiles, hashtags, and trends without authentication. Outputs JSON, CSV, and ZIP…

Scrape and download TikTok video posts and metadata from user profiles, hashtags, and trends without authentication. Outputs JSON, CSV, and ZIP…

Rogue access point toolkit for WiFi penetration testing, deploying evil portal phishing payloads to capture credentials and perform social…

Analysis of state-sponsored WhatsApp phishing infrastructure with real-time QR hijacking and device surveillance

Addressbar spoofing through blob URL (Firefox browser). An attack can use a blob URL and script to spoof an arbitrary addressbar URL prefaced by…

Osinton Its an open-source project running using SERP API and ollama mistral

EmailXpose is an open source AI-powered email security system that detects phishing, spam, scams, malware, and social engineering attacks. It goes…

Educational Telegram phishing simulation for cybersecurity training and awareness. Demonstrates credential harvesting via fake login pages in…

PoC exploit for CVE-2023-52076 - zip-slip path traversal in Atril/Xreader (MATE/Cinnamon) enabling arbitrary file write and RCE via crafted EPUB.…

A selfbot for discord made using Discord.py. It comes with 70+ commands and server nuking features

A lightweight, self-hosted simulation tool for "ClickFix" (ClearFake) social engineering training. Safely simulates clipboard-injection attacks with…

PoC exploit chain for WordPress pre-auth XSS to RCE via DOM clobbering, REST JSONP/SOME, and plugin upload, with Docker lab verification and…

Educational trojan simulator for cybersecurity training, simulating phishing attacks with social engineering, system reconnaissance, anti-sandbox…

Proof-of-concept exploit demonstrating OTP bypass in One Identity Cloud Access Manager 8.1.3 via MITM/SSL-strip, SAML response replay, and injected…

an attacker to create and export an address book containing a malicious payload in a field. For example, in the “Other” field of the Instant…

Web traffic interception simulation tool for cybersecurity research and defensive learning in isolated lab environments.

CVE-2024-3094 XZ Utils backdoor research - attack surface visualiser, system vulnerability checker, and general Linux CVE assessment tool

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

C# utility demonstrating CVE-2023-38831 archive-structure exploitation technique for WinRAR versions below 6.23. Builds proof-of-concept binaries for…