
CVE-2026-24031
Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

A font-based deception tool for red teaming, security research, and whatever else.

PoC exploit chain for WordPress pre-auth XSS to RCE via DOM clobbering, REST JSONP/SOME, and plugin upload, with Docker lab verification and…

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

C# Tool to interact with MS Exchange based on MS docs

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

Most Powerful Send Fake Mail Using Any Mail I'd undetectable

(DOM-based XSS) HTML Injection vulnerability in TOWeb v.12.05 and before allows an attacker to inject HTML/JS code via the _message.html component.

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).

OsintNET is a browser-based OSINT platform for domain intelligence, website risk scanning, SERP discovery, image intelligence and AI image detection.

just idea, no cp pls

CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

OSINT tool researched and designed to hunt down IG handles

This Script will help you to gather information about your victim or friend.

Rubber Ducky compatible clone based on CJMCU BadUSB HW.