
admin-panel-finder
Python script to discover admin panel URLs of websites, aiding in security reconnaissance and penetration testing.

Python script to discover admin panel URLs of websites, aiding in security reconnaissance and penetration testing.


Detects time-based SQL injection by sending crafted GET requests to multiple URLs and measuring delayed responses; includes cookie support for…

CISCO CVE-2020-3452 Scanner & Exploiter

A script for automatize boolean-based blind SQL injections (MVP).

CentOS Control Web Panel, Root Privilege Escalation

Rusty Joomla RCE Exploit

Spring Framework RCE (Quick pentest notes)

Exploit for CVE-2023-4427 targeting Chrome 117 V8, using many cross-origin iframes to brute-force ASLR and achieve code execution. Provides…

CVE-2020-13942 POC + Automation Script

Vulnerability scanner for Spring4Shell (CVE-2022-22965)

Scans host lists for GeoServer endpoints vulnerable to CVE-2023-25157 SQL injection, verifies exposed paths with keyword checks, and logs confirmed…

Proof-of-concept exploit for an actively exploited Zimbra Collaboration Suite vulnerability, designed for authorized penetration testing and…

Educational proof-of-concept for Telerik padding oracle vulnerabilities (CVE-2026-13181-184) with scripts for authorized security testing and…

Proof-of-concept exploits for CVE-2026-19912, CVE-2026-19913, and CVE-2026-19914, demonstrating file read and remote code execution in Kaltura,…

Proof-of-concept and research repository for CVE-2026-19975 in Azuriom, with setup instructions and a linked technical writeup for authorized…

Educational CVE-2026-81000 proof-of-concept repository for authorized security research, vulnerability awareness, and controlled lab testing.

Educational proof-of-concept for PaperCut pre-auth RCE chain (CVE-2023-27350, CVE-2023-27351) with setup scripts and authorized testing guidance.