
CVE-2020-3452_auto
Automated enumeration and file download tool exploiting CVE-2020-3452 in Cisco ASA devices, with Lua bytecode decompilation support.

Automated enumeration and file download tool exploiting CVE-2020-3452 in Cisco ASA devices, with Lua bytecode decompilation support.

Mass recognition tool for CVE-2021-44228

Research and exploitation tool targeting CVE-1999-0517, enabling vulnerability analysis and penetration testing for web-based security assessments.

Exploit tool for CVE-2021-44228 (Log4Shell) targeting vulnerable Log4j instances for remote code execution and security testing.

A simple CVE-2024-47176 (cups_browsed) check tool written in go.

Proof-of-concept or analysis tool for CVE-2024-24398, demonstrating exploitation of a specific vulnerability.

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

SSH-MITM - ssh audits made simple

This is the development tree. Production downloads are at:


Powershell script for enumerating vulnerable DCOM Applications

Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

Windows KASLR bypass using prefetch side-channel

JetBrains TeamCity Authentication Bypass CVE-2023-42793 Exploit

CVE-2024-24919 exploit

CVE-2024-52940 - A zero-day vulnerability in AnyDesk's "Allow Direct Connections" feature, discovered and registered by Ebrahim Shafiei (EbraSha),…

CVE-2025-5777 Citrix NetScaler Memory Leak Exploit (CitrixBleed 2)

MailMasta wordpress plugin Local File Inclusion vulnerability (CVE-2016-10956)