
sops
Simple and flexible tool for managing secrets

Simple and flexible tool for managing secrets

Automated SQL injection scanner for CKAN DataStore, detecting and validating CVE-2026-42031 with multi-target scanning, data dumping, and report…

Automated SSH-based scanner and patcher for Linux kernel LPE vulnerabilities CVE-2026-43284 and CVE-2026-43500, with multi-host discovery, privilege…

Exploit tool for CVE-2023-46604 in Apache ActiveMQ, supporting out-of-band exploitation, custom bytecode execution, and Shiro ini configuration for…

Exploit Proof-of-Concept code for XAMPP v3.3.0 — '.ini' Buffer Overflow (Unicode + SEH)

CVE-2026-64638 adalah kerentanan Pre-Auth Reflected Cross-Site Scripting (XSS) di WordPress yang ditemukan pada tahun 2026. Kerentanan ini…

Alat ini mendeteksi potensi kerentanan React2Shell (CVE-2025-55182) dalam proyek React dengan memeriksa: - File `package.json` dan file lock untuk…

Repository ini berisi Proof of Concept (PoC) untuk celah keamanan CVE-2025-38001 yang menyerang modul HFSC pada Kernel Linux. Dibuat khusus untuk…

Program ini adalah alat (tool) yang dibuat untuk memeriksa keamanan sistem Minio terkait dengan kerentanan CVE-2022-35919

Proof-of-concept exploit for CVE-2025-6934, a critical WordPress Opal Estate Pro plugin vulnerability enabling unauthenticated administrator account…

Proof-of-concept exploit for CVE-2026-47627, a path traversal vulnerability in NVIDIA Triton Inference Server leading to arbitrary file write via…

Python PoC exploiting CVE-2024-2044 in pgAdmin 4 (<=8.3) via authenticated path traversal and unsafe pickle deserialization to achieve remote code…

Unofficial exploit PoC for CVE-2026-63030, packaged for easier access; intended for vulnerability validation, security testing, and research.

Python helper to scan Fortinet web management for CVE-2026-24858 SSO authentication bypass and optionally send explicit payloads with user…

Exploit script for CVE-2026-41940, an authentication bypass in cPanel/WHM using CRLF injection to gain admin access and change root password, with…

Educational lab demonstrating CVE-2020-7598 prototype pollution in minimist with a vulnerable Node.js/Express app, exploit payload, and…

automation untuk CVE-2025-65862

Educational lab simulating npm supply chain attacks, CI/CD abuse, and install-time code execution via CVE-2026-45321. Hands-on defensive security…