
SecurityManageFramwork
Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management,…

Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management,…

PoC and internal port brute-forcer for CVE-2023-27163

A basic PoC leak for CVE-2021-28663 (Internal of the Android kernel backdoor vulnerability)

Unauthenticated Arbitrary File Read via Absolute Path

This is an Exploit App I made when solving the DocumentViewer challenge (CVE-2021-40724) from MobileHackingLab. It will download a libdocviewe_pro.so…


A critical Server-Side Template Injection (SSTI) vulnerability exists in the X-Trading Portal v1.4.2 dashboard metadata rendering engine. The flaw…

It is a simple script to automate internal port scanning dueto SSRF in requests-baskets v 1.2.1. this script can also assisst in solving 'SAU'…

This exploit was created to exploit an XXE (XML External Entity). Through it, I read the backend code of the web service and found an endpoint where…

Investigation of a PAN-OS CVE-2024-3400 command injection attempt, analyzing payload delivery, internal processing, and execution validation based on…

This repository contains a professional bug bounty report demonstrating the successful exploitation of a Blind SSRF vulnerability that reached an…

Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228

Tool to discover external and internal network attack surface

Tutorial of CVE-2022-37969 with focus on the methodology of Kernel exploitation, not CVE's internal causes


Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts

Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…
