A python script to automatically add a KeyCredentialLink to newly created users, by quickly connecting to them with default credentials.
仓库
p0dalirius 的仓库
A python script to scan for Apache Tomcat server vulnerabilities.
A multithreaded bruteforcer of argon2 hashes.
A Python tool to simulate keyboard typing when copy-paste functionality is unavailable, with both CLI and GUI modes.
Awesome list of step by step techniques to achieve Remote Code Execution on various apps!
MailMasta wordpress plugin Local File Inclusion vulnerability (CVE-2016-10956)
Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.
A script to exploit CVE-2020-14144 - GiTea authenticated Remote Code Execution using git hooks
CVE-2020-8813 - RCE through graph_realtime.php in Cacti 1.2.8
A path traversal in smbserver.py allows an attacker to read/write arbitrary files on the server.
Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability
Proof of concept of CVE-2022-21907 Double Free in http.sys driver, triggering a kernel crash on IIS servers
A python exploit to automatically dump all the data stored by the auto-completion plugin of Ametys CMS to a local sqlite database file.
CVE-2022-30780 - lighttpd remote denial of service
A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.
Pwndoc local file inclusion to remote code execution of Node.js code on the server
Command line tool to fetch, decode and brute-force CodeIgniter session cookies by guessing and bruteforcing secret keys.
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
A python tool to print CPU core temperatures for each cores.
A python tool to generate an Excel file linking the list of cracked accounts and their LDAP attributes.