Lists (1)
Sort Name ascending (A-Z)
Stars
Automatic SQL injection and database takeover tool
A collection of awesome penetration testing resources, tools and other shiny things
Playground (and dump) of stuff I make or modify for the Flipper Zero
Impacket is a collection of Python classes for working with network protocols.
Animate Anyone: Consistent and Controllable Image-to-Video Synthesis for Character Animation
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
Never ever ever use pixelation as a redaction technique
Gather and update all available and newest CVEs with their PoC.
A cheat sheet that contains advanced queries for SQL Injection of all types.
SSRF (Server Side Request Forgery) testing resources
PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
A little toolbox to play with Microsoft Kerberos in C
Linux kernel CVE exploit analysis report and relative debug environment. You don't need to compile Linux kernel and configure your environment anymore.
The most exhaustive list of reliable DNS resolvers.
A simple tool for bypassing file upload restrictions.
CVE-2022-23222: Linux Kernel eBPF Local Privilege Escalation
Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.
CVE-2022-44268 ImageMagick Arbitrary File Read - Payload Generator
A Zphisher GUI Back-Office Plugin
CVE-2022-41040 - Server Side Request Forgery (SSRF) in Microsoft Exchange Server
This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.
SpringFramework 远程代码执行漏洞CVE-2022-22965
Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.
Juniper Firewalls CVE-2023-36845 - RCE
Combine words from two wordlist files and concatenate them with an optional delimiter
PoC for CVE-2022-24342: account takeover via CSRF in GitHub authentication
CVE-2022-44268 ImageMagick Arbitrary File Read - Proof of Concept exploit