
wraith
Browser-hooking framework for authorized red teams and educators. Hooks browsers via XSS, provides interactive post-exploitation control, blind-XSS…
command-and-controleducationexploitation+6
154

Browser-hooking framework for authorized red teams and educators. Hooks browsers via XSS, provides interactive post-exploitation control, blind-XSS…

CVE-2026-87902 detector. WordPress get_page_template LFI class. Detect-only. Authorized lab.

Lab vulnerável (Docker) + PoC Python para a CVE-2026-87902 — path traversal não autenticado no WordPress Core (page-template -> LFI -> RCE…

Unauthenticated SQL Injection via Attribute Filter in Phoca Cart - CVSS 9.3

Cleartext Transmission of Sensitive Information in EagleEyes Lite Android Application