7,651 skills found · Page 7 of 256
lijiejie / Swagger ExpA Swagger API Exploit
3ndG4me / AutoBlue MS17 010This is just an semi-automated fully working, no-bs, non-metasploit version of the public exploit code for MS17-010
rosehgal / BinExpLinux Binary Exploitation
0xricksanchez / Paper CollectionAcademic papers related to fuzzing, binary analysis, and exploit dev, which I want to read or have already read
danigargu / CVE 2020 0796CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost
screetsec / DracnmapDracnmap is an open source program which is using to exploit the network and gathering information with nmap help. Nmap command comes with lots of options that can make the utility more robust and difficult to follow for new users. Hence Dracnmap is designed to perform fast scaning with the utilizing script engine of nmap and nmap can perform various automatic scanning techniques with the advanced commands.
xaitax / SploitScanSploitScan is a sophisticated cybersecurity utility designed to provide detailed information on vulnerabilities and associated exploits.
ly4k / PwnKitSelf-contained exploit for CVE-2021-4034 - Pkexec Local Privilege Escalation
WindowsExploits / ExploitsWindows Exploits
0xInfection / XSRFProbeThe Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.
bsauce / Kernel Exploit FactoryLinux kernel CVE exploit analysis report and relative debug environment. You don't need to compile Linux kernel and configure your environment anymore.
DhavalKapil / Heap ExploitationThis book on heap exploitation is a guide to understanding the internals of glibc's heap and various attacks possible on the heap structure.
dafthack / GraphRunnerA Post-exploitation Toolset for Interacting with the Microsoft Graph API
samyk / UsbdrivebyUSBdriveby exploits the trust of USB devices by emulating an HID keyboard and mouse, installing a cross-platform firewall-evading backdoor, and rerouting DNS within seconds of plugging it in.
DERE-ad2001 / Frida LabsThe repo contains a series of challenges for learning Frida for Android Exploitation.
wh1t3p1g / YsomapA helpful Java Deserialization exploit framework.
RedByte1337 / GraphSpyInitial Access and Post-Exploitation Tool for AAD and O365 with a browser-based GUI
W01fh4cker / Serein【懒人神器】一款图形化、批量采集url、批量对采集的url进行各种nday检测的工具。可用于src挖掘、cnvd挖掘、0day利用、打造自己的武器库等场景。可以批量利用Actively Exploited Atlassian Confluence 0Day CVE-2022-26134和DedeCMS v5.7.87 SQL注入 CVE-2022-23337。
W01fh4cker / VcenterKitVcenter综合渗透利用工具包 | Vcenter Comprehensive Penetration and Exploitation Toolkit
davinci1012 / Pinduoduo Backdoor UnpackerSamples and Unpacker of malicious backdoors and exploits developed and used by Pinduoduo