There are 2 repositories under vuln topic.
VulCan资产管理系统|漏洞扫描|资产探测|定时扫描
Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts
Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).
Multithread SMB scanner to check CVE-2020-0796 for SMB v3.11
is a PoC exploit targeting a specific vulnerability in the Linux kernel (CVE-2024-0582)
A Docker runner for vulnhub environment.
SSL Scanner For Search Information And Vulnerability
is a tool designed to scan SSH servers for known vulnerabilities and attempt exploitation based on identified weaknesses
LiveExploit is a CTF & binary exploitation toolkit that automates payload generation, ROP chains, shellcode creation, and crash analysis for exploit development. It provides an interactive CLI for quick prototyping of exploits in CTFs and security research.
BlueStacksInjector is a Python script designed to automate the injection of a payload into the startup directories of user profiles within a shared directory environment, such as BlueStacks.
Multifunctional Penetration Testing Tool developed in Go
GitScanner is a script to make it easy to search for Exposed Git through an advanced Google search.
the testing lab framework for vuln lab or ctf.also can used for teesting with some vuln scan tools
An example of how to exploit window.opener.
The "DLLHijack Injection" tool enables the injection of malicious DLLs into target processes, allowing for DLL hijacking attacks. This technique can be used to exploit vulnerable applications by replacing legitimate DLLs with malicious ones, potentially leading to unauthorized access, data manipulation, or system compromise.
ASNFinder is a tool created in Python3 that searches for ASNS in domains and organizations.
Repository containing nse script for vulnerability CVE-2022-21907. It is a component (IIS) vulnerability on Windows. It allows remote code execution. The vulnerability affects the kernel module http. sys, which handles most basic IIS operations.
API tests de seguridad para identificar vulnerabilidades ( hackingyseguridad.com )
A wrapper for the Node.js console to safely log strings to the console avoiding DoS vulnerabilities on Replit.
This is a repository with exploits for ToaruOS.
Este es un programa en Python para crear dos payloads simples con MsfVenom para vulnerar Windows.
Esta es un herramienta en Python para generar todo tipo de payloads con MsfVenom