Automate login attempts with the Login-Breaker-Pro script. Securely test user credentials for your web application or platform.
-
Updated
Oct 19, 2023 - Python
Automate login attempts with the Login-Breaker-Pro script. Securely test user credentials for your web application or platform.
🛡️ Web Penetration Testing is the process of testing websites or web apps for security flaws. 🔍 It helps find vulnerabilities like SQL injection, XSS, and authentication bypass. 🚨 Used to protect data, improve security, and prevent hacking attacks.
Perfom With Massive Authentication Bypass In PaperCut MF/NG
Apache Superset - Authentication Bypass
foundryvtt admin authentication bypass POC exploit
This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/ endpoint. Successful exploitation can compromise active user sessions, exposing authentication tokens in HTML. The attack is limited to active sessions and is terminated if the user logs out.
This repository demonstrates a privilege escalation attack targeting Open5GS's WebUI, exploiting unauthenticated database connections and forged session cookies/JWT tokens. The analysis reveals critical vulnerabilities in authentication mechanisms, offering insights for securing 5G network components.
PoC for CVE-2025-5777 – Auth Bypass and RCE in Trend Micro Apex Central
Reverse engineered ChatGPT client for authentication-free access
Authentication Bypass PoC for CVE-2025-2825 – Exploiting CrushFTP 10.x
Exploits for CVE-2020-9376 and CVE-2020-9377
It is a simple password brute force tool designed for ethical hacking and security testing. Automates the process of selecting passwords for a given user on a website by sending POST requests with different passwords and analyzing the response.
A Python tool for decrypting passwords hashed with the AuthMe SHA256 algorithm. Ideal for penetration testing and security audits on Minecraft servers using the AuthMe authentication plugin.
A PoC exploit for CVE-2024-27198 - JetBrains TeamCity Authentication Bypass
The Vulnerability of GoAhead Service on VStarcam C34S-X4 that allows you to download system.ini configuration file and get login and password.
WARNING: This is a vulnerable application to test the exploit for the Really Simple Security < 9.1.2 authentication bypass (CVE-2024-10924). Run it at your own risk!
This repository contains a basic custom lab environment designed to demonstrate and explore SQL injection vulnerabilities. The lab provides a hands-on learning experience to understand the risks associated with insecure coding practices and the impact of SQL injection attacks on web applications.
A PoC exploit for CVE-2023-51467 - Apache OFBiz Authentication Bypass
Hack Karadeniz 2022 CyberCafe sorusu için yazdığım writeup
A stealth SSH backdoor leveraging PAM shared object (.so) injection to bypass authentication and gain SSH access.
Add a description, image, and links to the authentication-bypass topic page so that developers can more easily learn about it.
To associate your repository with the authentication-bypass topic, visit your repo's landing page and select "manage topics."