
CVE-2024-55591-POC
A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability…

A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability…

Log4j Vulnerability RCE - CVE-2021-44228

File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.

This tool can be used to brute discover GET and POST parameters


Multi-domain HTTP 403 bypass scanner that tests header manipulation techniques to discover hidden access paths on web servers, supporting bulk domain…

Python script to discover admin panel URLs of websites, aiding in security reconnaissance and penetration testing.

Educational walkthrough of CVE-2018-4416, a WebKit JavaScriptCore type confusion vulnerability, with PoC, debugging setup, and analysis of common…

Mass vulnerability scanner targeting CVE-2024-36401 in GeoServer, using WFS requests to discover feature types and deliver payloads for automated…

PoC of CVE-2025-1974, modified from the world-first PoC~

Bludit <= 3.9.2 - Authentication Bruteforce Mitigation Bypass Exploit/PoC

DotDotPwn - The Directory Traversal Fuzzer

🔍 Discover and scan vulnerable Next.js instances to protect your infrastructure from critical RCE vulnerabilities like CVE-2025-55182.

Automated scanner for CVE-2020-5902 (F5 BIG-IP RCE) using FOFA search engine to discover and exploit vulnerable targets.