
scripts-and-tools
Scripts and utilities to help your hacking needs

Scripts and utilities to help your hacking needs

Detect and log CVE-2019-19781 scan and exploitation attempts.

Sashay is an automatic installer for useful tools.

Scan your Windows computer for known vulnerable or malicious drivers.


ToolShell scanner - CVE-2025-53770 and detection information

Perform file-based malware scan on your on-prem servers with AWS



Detects CVE-2026-45321 (TanStack supply chain compromise) and Mini Shai-Hulud worm artifacts. Scans node_modules, lockfiles, persistence hooks…

Find log4j for CVE-2021-44228 on some places * Log4Shell

Read-only WordPress User Registration CVE-2026-1492 checker for hidden admins, plugin version, uploads PHP, cron, and compromise IOCs.

Zero-dependency CLI scanner for npm/PyPI supply chain compromises. Detects compromised packages in lockfiles and system-level IOCs from attacks like…

Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts,…

Bash script to detect CVE-2025-55182 (React2Shell) and credential exposure in Next.js projects. Zero dependencies.

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath,…

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

Host-based detection rules for the RCE vulnerability in the React JavaScript framework.