


→ poc for CVE-2025-29927

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment

Curated repository of vulnerability disclosures from Mandiant, including CVEs discovered through internal research, red team assessments, and wild…

Offensive security research hub aggregating original vulnerability advisories, CVE proof-of-concept exploits, conference talks, and internal tooling…

Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation…

SquirrellyJS mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration…

Proof-of-concept demonstrating an authorization bypass in Traefik's Kubernetes Gateway provider (CVE-2026-54761) via a crossProviderNamespaces…

Proof-of-concept exploit for CVE-2022-46364, an Apache CXF SSRF vulnerability enabling arbitrary file reads and internal network probing via crafted…

[CVE-2024-26581] Vulnerability Checker for BGN Internal

Internal Hostname Disclosure Vulnerability

Script to exploit CVE-2018-1042 in order to do internal port scans.

PoC for CVE-2024-21626: runc leaks an internal fd referencing the host CWD before pivot_root, enabling container escape by setting process.cwd to…

CVE-2022-23779: Internal Hostname Disclosure Vulnerability

Technical audit of Kioptrix Level 1. Focus: Samba 2.2.1a exploitation (CVE-2003-0201), manual enumeration, and internal infrastructure hardening.

Vatilon-based IP cameras expose internal web directories without authentication, leading to information disclosure.

CF Internal Link Shortcode <= 1.1.0 - Unauthenticated SQL Injection