
CVE-2022-22965
Proof-of-concept exploit and testing scripts for Spring4Shell (CVE-2022-22965), a Spring Framework remote code execution vulnerability, with bash and…

Proof-of-concept exploit and testing scripts for Spring4Shell (CVE-2022-22965), a Spring Framework remote code execution vulnerability, with bash and…

Go-based network exploitation and MITM framework for authorized penetration testing, network reconnaissance, traffic interception, wireless security…

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

Differential testing framework for HTTP implementations

Fuzzing Framework for Modules in Apache HTTPD Server

Vulnerability Research

AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

Mass vulnerability scanner for CVE-2026-49049 – Unauthenticated Remote Code Execution in Joomla Helix3 plugin. Multi‑threaded, detects both executed…

Advanced CVE-2023-44487 HTTP/2 Rapid Reset vulnerability exploitation framework. Features multi-connection concurrent attacks, adaptive rate control,…

CVE-2021-31166: exploitation with Powershell, Python, Ruby, NMAP and Metasploit.

Plugin For BurpSuite (Pentester)

Anti-Anti-Automation Framework

camjacking templates

Security research tool for FortiWeb CVE-2025-64446 vulnerability. Automated exploitation framework with advanced logging, real-time metrics, proxy…

Ruby on Rails Phishing Framework

Pattern recognition for hosts, services, and content

WordPress Core Unauthenticated RCE (CVE-2026-63030, CVE-2026-60137)

WordPress wp2shell pre-auth RCE exploit kit (CVE-2026-63030 + CVE-2026-60137)