Skip to content
View joaomatosf's full-sized avatar

Block or report joaomatosf

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys

Python 660 89 Updated Feb 1, 2025

Trying to hack into keyboards

C 86 22 Updated Nov 29, 2018

Simple websites vulnerable to Server Side Template Injections(SSTI)

PHP 417 89 Updated Mar 16, 2023

Bypassing disabled exec functions in PHP (c) CRLF

PHP 405 64 Updated Oct 2, 2020

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 76,563 16,815 Updated Mar 16, 2026

Exploit written in Python for CVE-2018-15473 with threading and export formats

Python 532 184 Updated Jul 12, 2024

Google CTF

Python 4,930 591 Updated Feb 11, 2026

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Java 7,476 1,397 Updated Apr 2, 2026

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

Python 52 12 Updated Mar 14, 2018

Display information about files in different file formats and find gadgets to build rop chains for different architectures (x86/x86_64, ARM/ARM64, MIPS, PowerPC, SPARC64). For disassembly ropper us…

Python 2,107 221 Updated Feb 28, 2025

A Python module to bypass Cloudflare's anti-bot page.

Python 3,512 452 Updated Oct 14, 2023

This is a webshell open source project

PHP 10,711 5,608 Updated Dec 24, 2024

A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)

PowerShell 736 118 Updated Feb 5, 2019

A tool that implements the Golden SAML attack

Python 341 56 Updated Oct 15, 2018

SSRF (Server Side Request Forgery) testing resources

Python 2,481 493 Updated Oct 12, 2024

A list of public penetration test reports published by several consulting firms and academic security groups.

HTML 9,478 2,152 Updated Mar 22, 2026

Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).

Java 521 113 Updated Mar 11, 2022

The modern Java bytecode editor

Java 7,073 519 Updated Apr 1, 2026

Scripts-Scanner de hardening de SO (Linux, OpenBSD, FreeBSD, apache, PHP e outros)

Shell 40 15 Updated Feb 15, 2012

Deserialization payload generator for a variety of .NET formatters

C# 3,699 523 Updated Dec 23, 2024

Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro

Java 53 19 Updated Aug 5, 2013

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

Python 1,032 313 Updated Feb 3, 2020

Primitive tool for exploring/querying Java classes via the Tinkerpop Gremlin graph traversal language

Java 110 24 Updated May 12, 2016

Proof-of-concept codes created as part of security research done by Google Security Team.

C++ 1,879 246 Updated Mar 12, 2021

Exploit PoC for Spring RCE issue (CVE-2011-2894)

Java 44 22 Updated Dec 17, 2023

An SSL Enabled Basic Auth Credential Harvester with a Word Document Template URL Injector

Go 1,021 206 Updated Sep 11, 2017

A list of my CVE's with POCs

C 682 200 Updated Dec 15, 2020

This is a weaponized WSUS exploit

Shell 301 46 Updated Nov 25, 2022

Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren't popular!

9,242 1,612 Updated Oct 4, 2023
Next