
sqlmap
Automatic SQL injection and database takeover tool

Automatic SQL injection and database takeover tool

PhEmail is a python open source phishing email tool that automates the process of sending phishing emails as part of a social engineering test

Automated scanner for detecting Local File Inclusion (LFI) vulnerabilities in web applications by analyzing URLs and testing payloads via geckodriver.

Automated All-in-One OS Command Injection Exploitation Tool

File upload vulnerability scanner and exploitation tool.

HTA encryption tool for RedTeams

Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

An XSS exploitation command-line interface and payload generator.

Exploit for Mass Remote Code Execution on GPON home routers (CVE-2018-10562) obtained from Shodan.

A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.

Sorry, this tool WAS abandoned for a while. I got stress on this thing.

Exploit for CVE-2023-27524 targeting Apache Superset auth bypass and RCE. Forges session cookies, enumerates databases/users, executes OS commands,…

chusa - 注射 - the new generation of sqlmap

python2.7 script for JWT generation

A flaw in Gitea Open Source Git Server’s approval‑gate logic allows a pull request that originates from a permanent fork to merge without satisfying…

tac_plus Pre-Auth Remote Command Execution Vulnerability (CVE-2023-45239 & CVE-2023-48643)

A tool to find and exploit servers vulnerable to Shellshock