
Gemini-api-key-hunter
Scans websites and JS files for exposed Gemini API keys, verifies them live, enumerates accessible services, and provides a browser client for direct…

Scans websites and JS files for exposed Gemini API keys, verifies them live, enumerates accessible services, and provides a browser client for direct…

「🔑」A tool used to hunt down API key leaks in JS files and pages

Detailed analysis of CVE-2024-28397, a sandbox escape vulnerability in js2py enabling RCE via Python object traversal. Includes code analysis, PoC,…

POC for PDF JS' CVE-2024-4367 vuln

CVE-2022-23861: Multiple Stored Cross-Site Scripting in YSoft SafeQ

You can read the writeup on this script here

python3写的综合扫描工具,主要用来存活验证,敏感文件探测(目录扫描/js泄露接口/html注释泄露),WAF/CDN识别,端口扫描,指纹/服务识别,操作系统识别,POC扫描,SQL注入,绕过CDN,查询旁站等功能,主要用来甲方自测或乙方授权测试,请勿用来搞破坏。

Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

Get information client with getdatareport (Plugin)