
RTF-Cleaner
RTF Cleaner, tries to extract URL from malicious RTF samples using CVE-2017-0199 & CVE-2017-8759

RTF Cleaner, tries to extract URL from malicious RTF samples using CVE-2017-0199 & CVE-2017-8759

RTF de-obfuscator for CVE-2017-0199 documents to find URLs statically.

A collection of useful resources for hacking WordPress and it's plugins and themes

A collection of links related to Linux kernel security and exploitation

Automated Active Directory auditing and enumeration tool that generates detailed HTML audit reports with CSV/XLSX export, designed for security…

Validation target: minimal WordPress core slice reproducing the wp2shell (CVE-2026-63030 + CVE-2026-60137) REST-to-SQLi chain

Curated collection of offensive security conference slide decks covering kernel and mobile exploitation, VM/container escapes, and…

A collection of web pages vulnerable to SQL injection flaws

Amplify network visibility from multiple POV of other hosts

Nuclei scripts created by @rxerium for zero days / actively exploited vulnerabilities.

😎 🔗 Awesome list about all kinds of resources for learning Ethical Hacking and Penetration Testing.

NMAP Vulnerability Scanning Scripts

Curated collection of commands to validate leaked API keys from bug bounty programs and penetration tests, covering 80+ services including AWS,…

Curated collection of top HackerOne bug bounty reports organized by vulnerability type and program, with scripts to fetch, deduplicate, and rank…

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

Git All the Payloads! A collection of web attack payloads.

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.