
CVE-2023-36874
Proof-of-concept exploit for CVE-2023-36874, a Windows elevation of privilege vulnerability. Demonstrates exploitation on vulnerable Windows clients…

Proof-of-concept exploit for CVE-2023-36874, a Windows elevation of privilege vulnerability. Demonstrates exploitation on vulnerable Windows clients…

A PHP version scanner for reporting possible vulnerabilities

This project intends to provide a series of tools to craft, parse, send, analyze and crack a set of LoRaWAN packets in order to audit or pentest the…

BloodHound OpenGraph collector for GitHub that maps organization structure, permissions, and cross-cloud attack paths into a navigable graph for…

Static code analysis tool based on Elasticsearch

IDA python plugin to scan binary with Yara rules

Note: I am not responsible for any bad act. This is written by Chirag Artani to demonstrate the vulnerability.

This is an intentionally vulnerable smart contract truffle deployment aimed at allowing those interested in smart contract security to exploit a wide…

A deterministic harness and handbook for autonomous offensive LLM agents, enforcing authorization, scope, and evidence gates to ensure reproducible…

Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)

A high performance FortiGate SSL-VPN vulnerability scanning and exploitation tool.

original cve-2013-2094 exploit and a rewritten version for educational purposes

InfoHound is an OSINT to extract a large amount of data given a web domain name.

Fortinet Fortimanager Unauthenticated Remote Code Execution AKA FortiJump CVE-2024-47575

Web-based tool for assessing and tracking software security maturity using the OWASP SAMM and DSOMM models, with Docker support and automated mailing.

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

CLI tool for the Horizon3.ai API