-
mercurial-scm-extract Public
A tool to extract and dump files of mercurial SCM exposed on a web server.
-
stackdumper Public
A python tool to autmatically dump the stack content with a format string vulnerability in CTF.
-
CVE-2020-8813 - RCE through graph_realtime.php in Cacti 1.2.8
-
wav2mmv Public archive
WAV to MMV converter. You can then use the MMV file in input of MSSTV to decode Slow Scan Television (SSTV) sound signals.
-
Pwndoc local file inclusion to remote code execution of Node.js code on the server
-
FindAzureDomainTenant Public
A Python script to find tenant id an region from a list of domain names.
-
A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.
-
CrackedNTDStoXLSX Public
A python tool to generate an Excel file linking the list of cracked accounts and their LDAP attributes.
-
Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.
-
CodeIgniter-session-unsign Public
Command line tool to fetch, decode and brute-force CodeIgniter session cookies by guessing and bruteforcing secret keys.
-
a-simple-tcp-honeypot Public archive
A simple TCP Honeypot written in Python to keep a log of payloads and connections.
-
python-link-shortener Public
A self hosted simple link shortener in Flask
-
webapp-wordlists Public
This repository contains wordlists for each versions of common web applications and content management systems (CMS). Each version contains a wordlist of all the files directories for this version.
-
Detailed explanation of Windows cryptographic algorithms, with examples and schemes.
-
ctfd-parser Public
A python script to dump all the challenges locally of a CTFd-based Capture the Flag.
-
docker-sagemath Public
A sagemath docker for crypto challenges in CTFs
-
LimeSurvey-webshell-plugin Public
A webshell plugin and interactive shell for pentesting a LimeSurvey application.
-
ldap2json Public
The ldap2json script allows you to extract the whole LDAP content of a Windows domain into a JSON file.
-
pyLAPS Public
Python setter/getter for property ms-Mcs-AdmPwd used by LAPS.
-
pySortWindowsISOs Public
Extract the windows major and minor build numbers from an ISO file, and automatically sort the iso files.
-
win32errorcodes Public
A small C/C++ library to lookup Windows error codes.
-
linux-kernels Public
List of linux kernel versions and download links in JSON
-
AccountShadowTakeover Public
A python script to automatically add a KeyCredentialLink to newly created users, by quickly connecting to them with default credentials.
-
CVE-2022-30780 - lighttpd remote denial of service
-
CVE-2022-21907-http.sys Public
Proof of concept of CVE-2022-21907 Double Free in http.sys driver, triggering a kernel crash on IIS servers
-
CVE-2021-43008-AdminerRead Public
Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability
-
LFIDump Public
A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.
-
streamableDownloader Public
A simple python script to download videos hosted on streamable from their link
-
CpuCoresTemperatureGraph Public
A python tool to print CPU core temperatures for each cores.
-
Awesome-RCE-techniques Public
Awesome list of step by step techniques to achieve Remote Code Execution on various apps!