
CVE-2023-30092
Proof-of-concept exploit for SQL injection in Sourcecodester Online Pizza Ordering System 1.0. Demonstrates remote code execution and denial of…

Proof-of-concept exploit for SQL injection in Sourcecodester Online Pizza Ordering System 1.0. Demonstrates remote code execution and denial of…

On-device AI browser automation using WebLLM. No cloud, no API keys, fully private.

Exploit for Apache NiFi CVE-2023-34468, targeting a vulnerability in versions 1.21.0 and earlier to demonstrate data access and system compromise.

Proof-of-concept for CVE-2023-46450: authenticated stored cross-site scripting (XSS) vulnerability in the Add Supplier function of Sourcecodester…

Analysis and documentation for CVE-2023-34965, an SSPanel UIM information disclosure that leaks user subscription data via an unprotected /link/…

Reflected Cross-Site Scripting in Snipe-IT CSV Import Workflow

Free NGINX Rift CVE-2026-42945 detector for version, rewrite config, ASLR, crash logs, and exploitation indicators.

A fast multi threaded scanner for Citrix ADC (NetScaler) CVE-2019-19781 - Citrixmash

Multi-threaded Tor proxy with automatic IP rotation on configurable triggers (string, regex, status code, timeout) for penetration testing, WAF…

Detect security issues in an Apache CouchDB server

Detect-only scanner for CVE-2026-42945 (NGINX Rift), a heap overflow in ngx_http_rewrite_module. Version detection + nginx.conf pattern analysis.…

Automated framework for system hardening via modular commands. Secures Linux/Windows by reducing attack surface through firewall, user, network,…

A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas in the…

This script safely checks the local version of the LiteSpeed cPanel plugin to determine if the system is running a version vulnerable to…

Fully autonomous AI Agents system capable of performing complex penetration testing tasks

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

A secure low code deception runtime framework, leveraging AI for System Virtualization.

YARA-based scanner that detects obfuscated PHP malware and webshells using semantic pattern matching instead of file hashes, with a whitelist system…