This is your work, valued
CleverJAM. Smart jammer based on SDR with frequency hopping 🐇
★ 212LTE_HACKRF. Running LTE BTS with HackRF One
★ 109bitrix-nuclei-templates. Some nuclei templates for pentest CMS Bitrix
★ 42AutoCalypsoBTS. GUI CalypsoBTS
★ 40PIGSM. GSM Base Station on Raspberry Pi using CalypsoBTS
★ 28CVE-2024-23334. aiohttp LFI (CVE-2024-23334)
★ 27promother_project. The GUI is built on top of the osmo-nitb-scripts-calypsobts OR osmo-nitb-scripts software packages, which are used to configure and operate cellular base stations.
★ 22osmo-nitb-scripts-calypsobts. Tools for easy deployment of osmocom stack and pentesting gsm networks with CalypsoBTS
★ 16auth_bypass_connectwise_screenconnect. Exploit ConnectWise ScreenConnect (bypass authentication)
★ 13yeelink.light.color5.DeveloperMode. Python
★ 6Bitrix24DoS. This Python script is designed to exploit a security vulnerability in Bitrix24, leading to a Denial of Service (DoS) attack. The vulnerability, identified as CVE-2023-1718, allows an attacker to disrupt the normal operation of a Bitrix24 instance.
★ 4CVE-2023-3824. Vulnerability in PHP Phar files, due to buffer overflow, arises from insufficient length checks on file names within the Phar archive. Malicious actors can craft Phar files with long file names, leading to buffer overflow and potential execution of malicious code or data leakage. This vulnerability can be exploited for code execution CVE-2023-3824
★ 3nuclei-templates.
★ 2tpms_reader_flipper_zero. C
★ 1CVE-2023-42789. Check CVE-2023-42789
★ 1CVE-2024-21514. SQL Injection POC for CVE-2024-21514: Divido payment extension for OpenCart
★ 1frida-ssl-unpinning. HTML
★ 1rainfrog. 🐸 a database tool for the terminal
★ 5.2krayhunter. Rust tool to detect cell site simulators on an orbic mobile hotspot
★ 5.4kFacecheck.id-Extractor. FacecheckID Extractor is a Python script to extract source URLs from FaceCheck.id search results. It sends a POST request with an id_search value, decodes base64-encoded image data, and saves the embedded URLs to a text file for easy access to search result sources.
★ 23session-id-generator. Read-only mirror of https://git.hloth.dev/hloth/session-id-generator
★ 6banrays. Glasses to detect smart-glasses that have cameras. Ray-BANNED
★ 311android-unpinner. Remove Certificate Pinning from APKs
★ 1kios-ssl-bypass-and-traffic-monitor. iOS SSL Bypass & Real-Time Traffic Monitor – A Frida-based script for bypassing SSL pinning and monitoring network traffic on iOS apps in real-time. Designed for security researchers and ethical testing. 📡🔓
★ 22ios-ssl-pinning-demo. A tiny demo iOS app using SSL pinning to block HTTPS MitM interception
★ 21insert_dylib. Command line utility for inserting a dylib load command into a Mach-O binary
★ 2.1kdeepface. A Lightweight Face Recognition and Facial Attribute Analysis (Age, Gender, Emotion and Race) Library for Python
★ 23kreact2shell-scanner. Scanner to detect the presence of CVE-2025-55182 & CVE-2025-66478 on targeted web services.
★ 1Next.js-RSC-RCE-Scanner-Burp-Suite-Extension. Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).
★ 24cita-bot. Python
★ 314cve-2025-55182-scanner. Python
★ 4CVE-2025-55182-research. CVE-2025-55182 POC
★ 796apple-enhanced-contactless-polling. Reverse-engineering Apple Enhanced Contactless Polling
★ 342CVE-2025-39401. WordPress WPAMS Plugin <= 44.0 (17-08-2023) is vulnerable to a high priority Arbitrary File Upload
★ 5OSINTBox-data. Community-driven repository of OSINT tools and resources.
★ 72CVE-2025-24893-XWiki-Unauthenticated-RCE-Exploit-POC. CVE-2025-24893 is a critical unauthenticated remote code execution vulnerability in XWiki (versions < 15.10.11, 16.4.1, 16.5.0RC1) caused by improper handling of Groovy expressions in the SolrSearch macro.
★ 17LTE-Redirection_Attack. Force target victim to unsafe network
★ 33jssf. A JavaScript Secret Finder tool.
★ 34eaphammer. Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.
★ 2.5khttp-oracle-ebs-cve-2025-61882.nse. Detects Oracle E-Business Suite (CVE-2025-61882). Detection: multi-tier checks — fingerprinting, version checks, endpoint & SSRF tests, timing analysis & controlled exploitation 4 high-confidence results. Default = safe fingerprinting only. Set aggressive=true 2 enable active/probing checks use w/caution. Provided By BattalionX BattalionX@proton.me
★ 2Release. HTML
★ 818Phoenix-Rowhammer-Attack-CVE-2025-6202. Phoenix Rowhammer Attack: Systemic Risk of Bitcoin Wallet Private Key Compromise in Global Blockchain Infrastructure Due to a Critical SK Hynix DDR5 Vulnerability (CVE-2025-6202)
★ 5TPMS-Flipper. Generate TPMS sub files for the Flipper Zero
★ 158CTFd-theme-pixo. A Retro Styled CTFd Theme
★ 185Vape_DOOM_ScreenShare. Custom firmware for the PUYA SoC Based Vape Aspire PIXO to be used as a Screen Share DOOM Player
★ 37fawkes. Fawkes, privacy preserving tool against facial recognition systems. More info at https://sandlab.cs.uchicago.edu/fawkes
★ 5.6klaravel-crypto-killer. A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.
★ 145camoufox. 🦊 Anti-detect browser
★ 11kssh-audit. SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
★ 4.2kDensePose_from_WiFi. Using of the WiFi signal in combination with deep learning architectures, commonly used in computer vision, to estimate dense human pose correspondence.
★ 477CVE-2025-8723. Cloudflare Image Resizing <= 1.5.6 | Unauthenticated Remote Code Execution
★ 7Free-IPTV.
★ 29Artemis. A modular vulnerability scanner with automatic report generation capabilities.
★ 1.2kkbd-audio. 🎤⌨️ Acoustic keyboard eavesdropping
★ 9kpysim. A python tool to explore and program SIMs / USIMs / ISIMs. Mirror of https://gitea.osmocom.org/sim-card/pysim
★ 569MiniLPA. Professional LPA UI
★ 721bitchat. bluetooth mesh chat, IRC vibes
★ 33kpfsense-security-research. Authenticated Arbitrary File Read in pfSense 2.8.0 via Diagnostics Web Interface (CVE-2025-53392)
★ 14telegram-gift-market-auto-buyer. script allows you to buy specific nfts on telegram gift market, full customised and ready to use in telegram (android emulator)
★ 14Sierra-Wireless-EM74xx-Series-WWAN-Card-Driver-for-macOS-Catalina.
★ 9AirBorne-PoC. poc for CVE-2025-24252 & CVE-2025-24132
★ 164BLE-Replay. BLE-Replay is a Bluetooth Low Energy (BLE) peripheral assessment tool
★ 150metrodroid. Read data from public transit cards using your NFC Android phone! (iOS 13 and PC/SC support coming soon)
★ 649Lenovo-X270-Hackintosh-OpenCore-Sonoma. Python
★ 59airborn-IOS-CVE-2025-24252. iOS Airborne vulnerabilities log artifact extractor from LogArchive CVE-2025-24252
★ 3flipper-zero-bad-usb. My collection of BadUSB scripts for the Flipper Zero. By downloading the files, you automatically agree to the license and the specific terms in the ReadMe.
★ 648Tag_FW_EFR32xG22. Firmware for EFR32xG22-based tags
★ 20apple-home-key-reader. Apple Home Key Reader Implementation
★ 968apple-home-key-reader. Apple Home Key Reader Implementation
★ 3apple-home-key. Reverse-engineering Apple Home Key
★ 353circuits. ZKPassport circuits for generating passport and national ID zero-knowledge identity proofs
★ 91apple-device-as-access-card. Using your Apple device as an access card in unsupported systems
★ 475nfcgate. An NFC research toolkit application for Android
★ 2.3kP.A.S.-Fork. A modified version of the well-known webshell - P.A.S. by Profexer. Tries to solve the problem of detecting some requests and responses by various WAF/IDS.
★ 47writeups. some thoughts
★ 44Search-for-all-leaked-keys-secrets-using-one-regex-. Search for all leaked keys/secrets using one regex! bugbounty
★ 241flipper-zero-rf-jammer. Frequency and preset adjustable subghz radio frequency jammer for Flipper Zero
★ 736bincrypter. Pack/Encrypt/Obfuscate ELF + SHELL scripts
★ 455evilginx2. Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
★ 15kPOC-CVE-2025-24813. his repository contains an automated Proof of Concept (PoC) script for exploiting **CVE-2025-24813**, a Remote Code Execution (RCE) vulnerability in Apache Tomcat. The vulnerability allows an attacker to upload a malicious serialized payload to the server, leading to arbitrary code execution via deserialization when specific conditions are met.
★ 195CVE-2025-24813-PoC. Apache Tomcat 远程代码执行漏洞批量检测脚本(CVE-2025-24813)
★ 98CVE-2025-27840. Expanded version of the code shown at RootedCON redone in python - CVE-2025-27840
★ 11Xiaomi-cloud-tokens-extractor. This tool retrieves tokens for all devices connected to Xiaomi cloud and encryption keys for BLE devices.
★ 4.7kxmir-patcher. Firmware patcher for Xiaomi routers
★ 3.3kniimblue. 🖨 NIIMBOT custom web client/app. Design and print labels with NIIMBOT printers directly from your PC or mobile web browser!
★ 699nerve. The Simple Agent Development Kit.
★ 1.3kfree-esim. Free eSIM Trial
★ 23android-sms-gateway. The SMS Gateway for Android™ app enables sending and receiving SMS messages through an API that can be accessed directly on the device or via a cloud server when direct device access is not possible.
★ 5.2kWebshellDetectDataset. Webshell检测数据集,收集了PHP、JSP、ASP的正常开源代码样本以及恶意Webshell样本。可供Webshell检测研究使用。
★ 23FLIPPER-JAMM. Looking for those jamming files that were removed from custom firmwares? Here they are. Only for educational purposes, of course.
★ 404ffuf. Fast web fuzzer written in Go
★ 16ks5light. A lightweight socks5 proxy server and install script.
★ 57favicorn. All-sources tool to search websites by favicons
★ 198CloudPeler. CrimeFlare is a useful tool for bypassing websites protected by CloudFlare WAF, with this tool you can easily see the real IP of websites that have been protected by CloudFlare. The resulting information is certainly very useful for conducting further penetration testing, and analyzing websites with the same server.
★ 1.6kCyberPanel-RCE. CyberPanel 2.3.6 pre-auth RCE
★ 40Deep-Live-Cam. real time face swap and one-click video deepfake with only a single image
★ 95kCVE-2024-47176. Unauthenticated RCE on cups-browsed (exploit and nuclei template)
★ 17CVE-2024-45519. Python
★ 42spill. POC scanner for CVE-2024-47176
★ 7cupshax. Python
★ 234CVE-2021-36394-Pre-Auth-RCE-in-Moodle. Python
★ 10gemnasium-db. GitLab 依赖项扫描的咨询数据库,每天17:00自动更新
★ 47cve-2024-20017. exploits for CVE-2024-20017
★ 139uabb. Programs, Peoples, Companies and Resources about Bug Bounty in Ukraine
★ 6SUDO_KILLER. A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileges on the system, essentially allowing a regular user to execute commands as the root user.
★ 2.5kxzwhy. XZ Utils CVE-2024-3094 POC for Kubernetes
★ 5xz-vulnerable-honeypot. An ssh honeypot with the XZ backdoor. CVE-2024-3094
★ 147byob. An open-source post-exploitation framework for students, researchers and developers.
★ 9.5kCVE-2024-38063. poc for CVE-2024-38063 (RCE in tcpip.sys)
★ 693CVE-2024-5932. GiveWP PHP Object Injection exploit
★ 78AutoPWN-Suite. AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.
★ 1.1kSSH-Snake. SSH-Snake is a self-propagating, self-replicating, file-less script that automates the post-exploitation task of SSH private key and host discovery.
★ 2.3kcrack-elasticsearch-by-docker. Shell
★ 209simurai. Shell
★ 253waf-bypass. Check your WAF before an attacker does
★ 1.5ksocks-to-http-proxy. An executable to convert SOCKS5 proxy into HTTP proxy
★ 383PiKISS. PiKISS for Raspberry Pi: A bunch of scripts with menu to make your life easier.
★ 1kCVE-2024-32113-POC. Apache OfBiz vulns
★ 8nuclei_poc. Nuclei POC,每2小时更新 | 每日自动采集、验证、去重并发布 25 万+ 漏洞 PoC,保存已被删除的POC | 通过批量克隆Github项目,获取Nuclei POC,并将POC按类别分类存放,使用Github Action实现。
★ 2.1kIMEIToolz. IMEI Toos for Change Huawei E173 IMEI
★ 10RedGuard. RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.
★ 1.6k0days. PHP
★ 14Supershell. Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell
★ 1.8kgit-dumper. A tool to dump a git repository from a website
★ 2.6kMARS5-TTS. MARS5 speech model (TTS) from CAMB.AI
★ 2.8kCVE-2024-28995. CVE-2024-28955 Exploitation PoC
★ 34cve-2024-6387-poc. 32-bit PoC for CVE-2024-6387 — mirror of the original 7etsuo/cve-2024-6387-poc
★ 380cve-2024-6387-poc. a signal handler race condition in OpenSSH's server (sshd)
★ 494One-Liner-Collections. This Repositories contains list of One Liners with Descriptions and Installation requirements
★ 510advanced-sql-injection-for-awae.
★ 207Poc-Monitor. 🔍 Github CVE POC 信息监控推送 🚀
★ 414CVE-2024-21514. SQL Injection POC for CVE-2024-21514: Divido payment extension for OpenCart
★ 4mimipenguin. A tool to dump the login password from the current linux user
★ 4.1kesp8266_deauther. Affordable WiFi hacking platform for testing and learning
★ 15kCVE-2024-22120-RCE. Time Based SQL Injection in Zabbix Server Audit Log --> RCE
★ 141CVE-2021-32648. Proof Of Concept code for OctoberCMS Auth Bypass CVE-2021-32648
★ 12Microsoft-Activation-Scripts. Open-source Windows and Office activator featuring HWID, Ohook, TSforge, and Online KMS activation methods, along with advanced troubleshooting.
★ 185kQCSuper. QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.
★ 1.6kElementor-3.18.0-Upload-Path-Traversal-RCE-CVE-2023-48777. Python
★ 10NucleiScanner. NucleiScanner is a Powerful Automation tool for detecting Unknown Vulnerabilities in the Web Applications
★ 348check_bitrix. Check bitrix vulnerabilities
★ 100bitrix-nuclei-templates. Some nuclei templates for pentest CMS Bitrix
★ 42xzbot. notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)
★ 3.6kCloudflareBypassForScraping. A cloudflare verification bypass script for webscraping
★ 2.5katexec-pro. Fileless atexec, no more need for port 445
★ 414ZDI-24-020. C
★ 129Ford-Sync2-MirrorLink-VideoPlayer-Navitel. This way we can start Mirrorlink with EasyCon once we have it installed in Ford Sync2, through the packs.
★ 33omxplayer. omxplayer
★ 1kiris-web. Collaborative Incident Response platform
★ 1.5kCVE-2023-48788. Fortinet FortiClient EMS SQL Injection
★ 54CVE-2024-23334. aiohttp LFI (CVE-2024-23334)
★ 27grok-1. Grok open release
★ 52kbe-auth-service. TypeScript
★ 72Bitrix24DoS. This Python script is designed to exploit a security vulnerability in Bitrix24, leading to a Denial of Service (DoS) attack. The vulnerability, identified as CVE-2023-1718, allows an attacker to disrupt the normal operation of a Bitrix24 instance.
★ 4ScreenConnect-AuthBypass-RCE. ScreenConnect AuthBypass(cve-2024-1709) --> RCE!!!
★ 110auth_bypass_connectwise_screenconnect. Exploit ConnectWise ScreenConnect (bypass authentication)
★ 12CVE-2024-23897. Python
★ 99CVE-2023-22527. Exploit for CVE-2023-22527 - Atlassian Confluence Data Center and Server
★ 4CVE-2023-7028. This repository presents a proof-of-concept of CVE-2023-7028
★ 246GTFONow. Automatic privilege escalation for misconfigured capabilities, sudo and suid binaries using GTFOBins.
★ 638srsRAN_4G. Open source SDR 4G software suite from Software Radio Systems (SRS) https://docs.srsran.com/projects/4g
★ 4knuclei-templates. JavaScript
★ 38smtpsmug. Python
★ 109PayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF
★ 80knmap-bootstrap-xsl. A Nmap XSL implementation with Bootstrap.
★ 961PIGSM. GSM Base Station on Raspberry Pi using CalypsoBTS
★ 28CVE-2019-0708. CVE-2019-0708 (BlueKeep) proof of concept allowing pre-auth RCE on Windows7
★ 149CVE-2022-27925. Zimbra CVE-2022-27925 PoC
★ 43zimbra-slapper. zimbra "zmslapd" lpe
★ 24CVE-2022-35914-poc. Python
★ 51Noto. Minimal Note-Taking App
★ 574sshx. Fast, collaborative live terminal sharing over the web
★ 7.6krenovate. Home of the Renovate CLI: Cross-platform Dependency Automation by Mend.io
★ 22kfhc. Fast HTTP Checker.
★ 212PentestGPT. Automated Penetration Testing Agentic Framework Powered by Large Language Models
★ 15kgrype. A vulnerability scanner for container images and filesystems
★ 13kCVE-2023-27997-check. Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing
★ 134xortigate-cve-2023-27997. xortigate-cve-2023-27997
★ 62CVE-2023-4911. CVE-2023-4911 proof of concept
★ 167passkit-generator. The easiest way to generate custom Apple Wallet passes in Node.js
★ 1.2kpass-js. Apple Wallet Passes generating library for Node.JS
★ 734PKPassCreator. Python
★ 46curlshell. reverse shell using curl
★ 478Hacking_Tools_Cheat_Sheet. Shell
★ 771CVE-2021-23017-PoC. PoC for Nginx 0.6.18 - 1.20.0 Memory Overwrite Vulnerability CVE-2021-23017
★ 134croc. Easily and securely send things from one computer to another :crocodile: :package:
★ 39kCVE-2023-32243. CVE-2023-32243 - Essential Addons for Elementor 5.4.0-5.7.1 - Unauthenticated Privilege Escalation
★ 85matterbridge. bridge between mattermost, IRC, gitter, xmpp, slack, discord, telegram, rocketchat, twitch, ssh-chat, zulip, whatsapp, keybase, matrix, microsoft teams, nextcloud, mumble, vk and more with REST API (mattermost not required!)
★ 7.5kmockingbird. ADS-B spoofing code for GNURadio
★ 7CVE-2021-4034. CVE-2021-4034 1day
★ 2kAppleJuice. Apple BLE proximity pairing message spoofing
★ 1.9kRedmine-CVE-2019-18890. CVE-2019-18890 POC (Proof of Concept)
★ 4Needl. Take back your privacy. Lose yourself in the haystack.
★ 562hetty. An HTTP toolkit for security research.
★ 12kCVE-2023-32315-Openfire-Bypass. rce
★ 142haiti. :key: Hash type identifier (CLI & lib)
★ 993sshd_backdoor. /root/.ssh/authorized_keys evil file watchdog with ebpf tracepoint hook.
★ 350CVE-2023-3519. RCE exploit for CVE-2023-3519
★ 227CVE-2023-36874. This repository contains a proof-of-concept exploit written in C++ that demonstrates the exploitation of a vulnerability affecting the Windows Error Reporting (WER) component.
★ 79Shop-bot. 🛒 Telegram shop bot template
★ 503inotify-tools. inotify-tools is a library and a set of command-line programs providing a simple interface to inotify.
★ 3.4kSeedSearch.py. A python tool that scans files in directories and subdirectories hunting BIP39 mnemonic seeds.
★ 13snoopy. Snoopy Command Logger is a small library that logs all program executions on your Linux/BSD system.
★ 1.3kttyd. Share your terminal over the web
★ 12kPRET. Printer Exploitation Toolkit - The tool that made dumpster diving obsolete.
★ 4.3kbtop. A monitor of resources
★ 34klisa. Sandbox for automated Linux malware analysis.
★ 486PoC-in-GitHub. 📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.
★ 7.9kStackRot. CVE-2023-3269: Linux kernel privilege escalation vulnerability
★ 499gr-spoof1090. CMake
★ 3Awesome-Cybersecurity-Handbooks. A huge chunk of my personal notes since I started playing CTFs and working as a Red Teamer.
★ 3.9ktransfer.sh. Easy and fast file sharing from the command-line.
★ 16kthefuck. Magnificent app which corrects your previous console command.
★ 98kFallingSkies-CVE-2023-35885. Cloudpanel 0-day Exploit
★ 55Speed-Test. SpeedTest by OpenSpeedTest™ is a Free and Open-Source HTML5 Network Performance Estimation Tool Written in Vanilla Javascript and only uses built-in Web APIs like XMLHttpRequest (XHR), HTML, CSS, JS, & SVG. No Third-Party frameworks or libraries are Required. Started in 2011 and moved to OpenSpeedTest.com dedicated Project/Domain Name in 2013.
★ 3.7kgetcourse-ru-web-scraper. Web scraper for getcourse.ru
★ 3CVE-2023-35086-POC. POC of CVE-2023-35086 only DoS
★ 44