
CVE-2024-54772
Python-based exploit for CVE-2024-54772 enabling username enumeration on MikroTik RouterOS versions v6.43 through v7.17.2 using wordlist or…

Python-based exploit for CVE-2024-54772 enabling username enumeration on MikroTik RouterOS versions v6.43 through v7.17.2 using wordlist or…

Scrape Pastebin API to collect daily pastes, setup a wordlist and be alerted by email when you have a match.

NCC Code Navigator


An advanced JWT extraction & decoding tool for bug bounty hunters! 🏴☠️

A care package of useful bofs for red team engagments

Web-based project management interface for penetration testing and bug bounty workflows, automating port scanning with Nmap/Masscan and subdomain…

IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.

exploit code for F5-Big-IP (CVE-2020-5902)

USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

LDAP Swiss Army Knife

An automated, reliable scanner for the Log4Shell (CVE-2021-44228) vulnerability.

Tool to spray AWS Console IAM Logins

Proof-of-concept exploit for CVE-2018-14847 allowing arbitrary file read of plaintext passwords from MikroTik RouterOS WinBox service, with TCP/IP…

PoC exploit script for Apache HTTP Server 2.4.49 path traversal and file disclosure vulnerability (CVE-2021-41773). Supports single IP, file list,…

Automated CVE collector that crawls cvedetails.com, parses HTML for vulnerabilities with CVSS ≥ 6, and stores results in a delimiter-based file…

ActionScript Proof of Concept to perform cross-domain reads

Volatility plugin to extract X screenshots from a memory dump