
Gemini-api-key-hunter
Scans websites and JS files for exposed Gemini API keys, verifies them live, enumerates accessible services, and provides a browser client for direct…

Scans websites and JS files for exposed Gemini API keys, verifies them live, enumerates accessible services, and provides a browser client for direct…

Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

python3写的综合扫描工具,主要用来存活验证,敏感文件探测(目录扫描/js泄露接口/html注释泄露),WAF/CDN识别,端口扫描,指纹/服务识别,操作系统识别,POC扫描,SQL注入,绕过CDN,查询旁站等功能,主要用来甲方自测或乙方授权测试,请勿用来搞破坏。

「🔑」A tool used to hunt down API key leaks in JS files and pages

You can read the writeup on this script here

Get information client with getdatareport (Plugin)

POC for PDF JS' CVE-2024-4367 vuln

Detailed analysis of CVE-2024-28397, a sandbox escape vulnerability in js2py enabling RCE via Python object traversal. Includes code analysis, PoC,…

CVE-2022-23861: Multiple Stored Cross-Site Scripting in YSoft SafeQ