Skip to content
View joaomatosf's full-sized avatar

Block or report joaomatosf

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
54 results for source starred repositories
Clear filter

Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys

Python 652 88 Updated Feb 1, 2025

Trying to hack into keyboards

C 86 22 Updated Nov 29, 2018

Simple websites vulnerable to Server Side Template Injections(SSTI)

PHP 412 87 Updated Mar 16, 2023

Bypassing disabled exec functions in PHP (c) CRLF

PHP 404 64 Updated Oct 2, 2020

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 72,402 16,344 Updated Dec 12, 2025

Exploit written in Python for CVE-2018-15473 with threading and export formats

Python 531 184 Updated Jul 12, 2024

Google CTF

Python 4,865 583 Updated Oct 30, 2025

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Java 7,355 1,388 Updated Dec 17, 2025

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

Python 52 12 Updated Mar 14, 2018

Display information about files in different file formats and find gadgets to build rop chains for different architectures (x86/x86_64, ARM/ARM64, MIPS, PowerPC, SPARC64). For disassembly ropper us…

Python 2,075 220 Updated Feb 28, 2025

A Python module to bypass Cloudflare's anti-bot page.

Python 3,490 453 Updated Oct 14, 2023

This is a webshell open source project

PHP 10,631 5,620 Updated Dec 24, 2024

A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)

PowerShell 738 120 Updated Feb 5, 2019

A tool that implements the Golden SAML attack

Python 338 56 Updated Oct 15, 2018

SSRF (Server Side Request Forgery) testing resources

Python 2,477 491 Updated Oct 12, 2024

A list of public penetration test reports published by several consulting firms and academic security groups.

HTML 9,286 2,122 Updated Nov 24, 2025

Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).

Java 517 115 Updated Mar 11, 2022

The modern Java bytecode editor

Java 6,877 512 Updated Dec 18, 2025

Scripts-Scanner de hardening de SO (Linux, OpenBSD, FreeBSD, apache, PHP e outros)

Shell 40 15 Updated Feb 15, 2012

Deserialization payload generator for a variety of .NET formatters

C# 3,634 524 Updated Dec 23, 2024

Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro

Java 53 20 Updated Aug 5, 2013

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

Python 1,027 313 Updated Feb 3, 2020

Primitive tool for exploring/querying Java classes via the Tinkerpop Gremlin graph traversal language

Java 108 24 Updated May 12, 2016

Exploit PoC for Spring RCE issue (CVE-2011-2894)

Java 44 22 Updated Dec 17, 2023

An SSL Enabled Basic Auth Credential Harvester with a Word Document Template URL Injector

Go 1,013 207 Updated Sep 11, 2017

A list of my CVE's with POCs

C 678 201 Updated Dec 15, 2020

This is a weaponized WSUS exploit

Shell 297 45 Updated Nov 25, 2022

Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren't popular!

9,158 1,619 Updated Oct 4, 2023

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 67,643 24,823 Updated Dec 19, 2025
Next