

Fully functional script for brute forcing SSH and trying credentials - CVE-2018-15473

CVE-2025-58434 Proof of Concept

CredsHunter - Credential Hunting scripts for Windows and Linux OS

PoC for CVE-2025-25198: automated Host header poisoning test for Mailcow - HTTPS listener, automatic cookie/CSRF handling, captures first reset link.


Weblogic Unrestricted File Upload


One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️

Privacy-first password manager with local storage and bring-your-own-cloud sync across Google Drive, Microsoft OneDrive, and Dropbox. Your…

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

CVE-2019-9053 Exploit for Python 3

XSS via Host Header injection and Steal Password Reset Token of another user


Proof of Work of CVE-2023-23397 for vulnerable Microsoft Outlook client application.
