An open API service indexing awesome lists of open source software.

Exploit

Exploit refers to a piece of code or technique that takes advantage of a security vulnerability in a system, application, or network to cause unintended behavior. Exploits can be used by attackers to gain unauthorized access, escalate privileges, execute arbitrary code, or cause a denial of service. This topic covers the various types of exploits, such as zero-day exploits, remote code execution, and privilege escalation. It also explores the lifecycle of an exploit, from discovery and development to deployment and mitigation, and highlights the importance of vulnerability management and patching in preventing exploits.

https://github.com/ishacker003/testbuild_exploit

Exploit to get elevated privilleges on devices where the Android build is signed with test keys.

android exploit testkeys uid-system

Last synced: 29 Jan 2026

https://github.com/mr-r0ot/exploitchrome

An exploit that uses the vulnerabilities and vulnerabilities in the Chrome browser to acquires Password and browser experiences.

chrome-exploit chrome-vulnerability exploit vulnerability

Last synced: 12 Jun 2025

https://github.com/renatoalencar/dlink-dir610-exploits

Exploits for CVE-2020-9376 and CVE-2020-9377

authentication-bypass dlink exploit remote-code-execution

Last synced: 12 Apr 2025

https://github.com/sircryptic/adbsploit

ADBSploit - A tool for Android device exploitation and management via ADB. Connects via USB/IP, controls apps/media/files, and supports Fastboot. Built by SirCryptic, inspired by PhoneSploit. Use responsibly.

adb adb-commands andoid-tools android exploit linux python tool windows

Last synced: 12 Apr 2025

https://github.com/zebbern/dorkingwordlists

🧾 | Google Dorks for automation and manual search a list containing my most used dorks in bug bounty and pentesting!

bugbounty dorking dorking-list dorks exploit googe-dorking google google-hacking google-search google-sheets hacking osint osint-list pentest pentesting search-engine searching-algorithms wordlist worlists

Last synced: 31 Jan 2026

https://github.com/z3n70/CVE-2021-41277

simple program for exploit metabase

bugbounty cybersecurity exploit metabase ruby

Last synced: 10 Mar 2025

https://github.com/demining/bitcoin-lightning-wallet-vulnerability

How to find a private key in binary code from Bitcoin Lightning Wallet Vulnerability in Quasar Framework

bitcoin bitcoin-wallet blockchain exploit hack hacking metasploit metasploit-framework privatekey vulnerability vulnerable

Last synced: 02 Jan 2026

https://github.com/totekuh/shellcrafter

Scripts, tools and code snippets for exploit development/assembly/shellcoding

assembly exploit exploit-development keystone pip python3 shellcode

Last synced: 15 Apr 2025

https://github.com/baum1810/anonxss

this is a xss exploit for the popular filehoster anonfiles its been around for some while but i have edit it a bit

anofiles anonfiles-xss api baum1810 ethical-hacking ethical-hacking-tools exploit flask flask-server grabber ip ipgrabber python replit requests xss

Last synced: 17 Aug 2025

https://github.com/krishpranav/pyssh

A simple python tool to get ssh password of a target machine when they connect to the pySSH server

exploit pip pip3 python python3 ssh ssh-server

Last synced: 11 Sep 2025

https://github.com/ibnusyawall/find-shell

Find shell backdoor on website

exploit nodejs shell-backdoor

Last synced: 19 Jun 2025

https://github.com/nhas/cve-2024-45337-poc

Proof of concept (POC) for CVE-2024-45337

cve cve-2024-45337 exploit golang hack pentesting poc proof-of-concept ssh

Last synced: 09 Apr 2025

https://github.com/paulveillard/cybersecurity-hack-value

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Hack Value in Cybersecurity.

cybersecurity exploit exploits-finder exploits-scripts hacking hacking-code hacking-framework hacking-tools security-tools vulnerability vulnerability-assessment vulnerability-detection vulnerability-scanners

Last synced: 19 Mar 2026

https://github.com/volkansah/sqlp-edu

Example Python script that demonstrates a simple example of a Cross-Site Scripting (XSS) exploit for educational purposes only. This script is intended to be used responsibly, for learning and understanding the security implications of XSS attacks, and should not be used for any illegal or unethical activities.

bypass cross-site-scripting ehtical-hacking-tools exploit exploitation explotation hacking hacking-tool hacking-tools penetration-testing pentesting phishing python security sql-xss vulnerability xss xss-attacks xss-exploitation xss-injection

Last synced: 11 Jul 2025

https://github.com/wuseman/inteno_fg500-netatonce

My personal and unique wiki for hacking the router firmware used by (Many Swedish ISPS)FG500 delivered from Inteno Group

bugs cracking curl exploit fg500 firmware group hacking inteno netatonce ownit router vulnerability

Last synced: 10 Apr 2025

https://github.com/helidem/cve-2025-24054-poc

Proof of Concept for the NTLM Hash Leak via .library-ms CVE-2025-24054

cve cve-2025-24054 cve-2025-24071 exploit library-ms ntlm ntlm-hash phishing poc windows

Last synced: 25 Apr 2025

https://github.com/samkg/flush-reload-sidechannel

A demonstration of a sidechannel vulnerability that exploits cache timings using Flush Reload to communicate information over a covert channel

covert-channel exploit intel linux

Last synced: 13 Apr 2025

https://github.com/krishpranav/autosploit

A simple ruby tool to automate metasploit modules

bash exploit exploiter metasploit metasploit-modules msfs ruby shell

Last synced: 15 Apr 2025

https://github.com/loneicewolf/vulnserver-bof

My approach to the VulnServer BOF (Windows 10 - SYSTEM gained)

exploit loneicewolf oscp oscp-prep oscp-tools vulnserver william-martens

Last synced: 09 Apr 2025

https://github.com/retr0kr0dy/malloc-bomb

Presenting the latest Linux bomb exploit: not a fork but a malloc-based threat. Delve into the intricacies of this novel vulnerability.

coding cybersecurity denial-of-service dos exploit forkbomb hacking infosec linux malloc pentesting security system-exploitation vulnerability

Last synced: 18 Jun 2026

https://github.com/kennytv/exploitfixes

Fixes a recently found tab complete server crash (fixed in Paper 1.20.4). May be used for more in the future

crash exploit fix minecraft paper

Last synced: 05 Mar 2025

https://github.com/randomrobbiebf/cve-2024-22145

InstaWP Connect <= 0.1.0.8 - Missing Authorization to Arbitrary Options Update (Subscriber+)

cve-2024-22145 exploit instawp-connect wordpress

Last synced: 08 Oct 2025

https://github.com/b2r2-org/poe

PoE (Proof-of-Exploit) is a language designed specifically for writing an exploit.

ctf exploit fsharp hacking poe programming-language

Last synced: 06 Oct 2025

https://github.com/jmpews/evilheap

heap exploit example

exploit heap

Last synced: 01 Apr 2026

https://github.com/000pp/arbimz

🔥 Arbimz is a python tool created to exploit the vulnerability on Zimbra assigned as CVE-2019-9670.

2019 cve cve-2019-9670 exploit offsec pentest poc python python3 rce redteam ssrf xxe zimbra

Last synced: 24 Apr 2025

https://github.com/ndirmn3/zoom-in-cloaker

when zoomed in to at least 150%, the overlapping content disappears. this is useful for cloaking content

cloak cloaker cloakers cloaking cloaks exploit game games school

Last synced: 07 Mar 2026

https://github.com/000pp/zaber

🕵️ Yet another CVE-2019-9670 exploit, but in Golang.

blueteam cve cve-2019-9670 exploit go golang redteam vulnerability zimbra

Last synced: 24 Apr 2025

https://github.com/dreadl0ck/osx-root-installer

OSX ElCapitan Privilege Escalation Proof Of Concept

exploit osx osx-security security

Last synced: 08 Apr 2025

https://github.com/institute-atri/wastrap

🐋 Web exploration tool focused on the WordPress application. 🐋

exploit golang scan scanner vulnerabilities wastrap wordpress

Last synced: 14 Jan 2026

https://github.com/epsylon/x11-stack-corruption

X11/libX11.so.6 (XQueryKeymap) Stack corruption/Access violation [PoC+ Fuzzer]

exploit fuzzer poc

Last synced: 04 Aug 2025

https://github.com/p0dalirius/rpccoercetemplatecpp

A template of C++ code to call a Remote Procedure on a windows machine to coerce an authentication

authentication coerce cpp exploit path rpc smb template unc

Last synced: 26 Feb 2026

https://github.com/hktalent/createoneminjar

Automatically search for the required class and package it as a jar Create One Min Jar file

0-day 0day build deserialize exp exploit jar java rce tools

Last synced: 14 May 2025

https://github.com/sertrafurr/thefall.io-infinite-money

Little api abuse found inside the Aywen's game

api api-abuse aywen exploit glitch infinite javascript money tampermonkey

Last synced: 30 Jun 2025

https://github.com/demining/defi-attacks

DeFi Attacks & Exploits all the biggest cryptocurrency thefts from 2021 to 2022

attack attacks attacks-threats-vulnerabilites bitcoin bitcoin-wallet blockchain defi defichain ethereum exploit exploits

Last synced: 03 May 2025

https://github.com/monke443/cve-2023-40028

Arbitrary file read in Ghost-CMS allows an attacker to upload a malicious ZIP file with a symlink.

cve cve-2023-40028 exploit ghost-cms github pentesting security vulnerability

Last synced: 07 May 2025

https://github.com/andreiglesias/snow-crash

Cybersecurity challenge series to develop skills in penetration testing, reverse engineering, and exploit development.

ctf ctf-writeups cybersecurity exploit pentesting reverse-engineering

Last synced: 07 May 2025

https://github.com/acceis/exploit-cve-2022-0482

Easy!Appointments < 1.4.3 - Unauthenticated PII (events) disclosure

cve cve-2022-0482 disclosure exploit pii

Last synced: 08 Apr 2025

https://github.com/bstrdlord/mirai-sucks

stop using mirai botnet. better use zig boatnet

boatnet botnet ddos exploit malware mirai qbot shitcode

Last synced: 24 Apr 2025

https://github.com/Acceis/exploit-CVE-2022-0482

Easy!Appointments < 1.4.3 - Unauthenticated PII (events) disclosure

cve cve-2022-0482 disclosure exploit pii

Last synced: 10 Mar 2025

https://github.com/FOGSEC/isf

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

control exploit framework ics ics-security industrial python systems

Last synced: 10 Mar 2025

https://github.com/cyn-ically/thefall.io-infinite-money

Little api abuse found inside the Aywen's game

api api-abuse aywen exploit glitch infinite javascript money tampermonkey

Last synced: 11 Jun 2025

https://github.com/xeloxa/xeloxa

Hello 🥷🏿, I'm XELOXA (Ali Sünbül)

cyber cybersecurity exploit penetration-testing pentesting python redteam vulnerability

Last synced: 05 Apr 2025

https://github.com/techgaun/exploit-db-search

Search exploit database

exploit offensive-security shell

Last synced: 17 Feb 2026

https://github.com/onuratakan/haimgard

Haimgard is an environment for writing, testing and using exploit code.

cybersecurity environment exploit hacking hacktool module modules python3 testing whitehat

Last synced: 23 Apr 2025

https://github.com/richardschwabe/chankro3

Exploit mail function in php when admin disabled other functions like shell. Uses LD_PRELOAD

cyber cyber-security exploit pentest-scripts pentesting pentesting-tools php php-exploit

Last synced: 03 Apr 2025

https://github.com/codeb0ss/cve-2023-20073-

Mass Exploit - CVE-2023-20073 - Cisco VPN Routers - [Unauthenticated Arbitrary File Upload and Stored XSS]

0day bug bugbounty cisco codeb0ss codeboss cve cve-2023-20073 exploit hackerone mass mass-exploit uncodeboss vpn-router

Last synced: 10 Sep 2025

https://github.com/shafdo/proftpd-1.3.3c-backdoor_command_execution_automated_script

A script to interact with the ProFTPD-1.3.3c inbuilt backdoor

exploit penetration-testing pentesting

Last synced: 13 Apr 2025

https://github.com/aryanslayerrr/miner-automation

A miner that works on a vulrenability of a website

crypto exploit mining monero python xmrig

Last synced: 25 Apr 2025

https://github.com/fssay/dall-e

Free DALL-E text-to-image generator using exploit in a third-party service

ai dall-e dalle exploit rust-lang tauri text-to-image

Last synced: 01 May 2026

https://github.com/rsrdesarrollo/auto-ysoserial

Generate all ysoserial payloads with burp collaborator (or similar)

burp burpsuite exploit java python security security-tools ysoserial

Last synced: 15 May 2026

https://github.com/voidsec/virit-explorer-lpe-arbitrary-code-execution

VirIT Explorer v.8.1.68 Local Privilege Escalation (System)/Arbitrary Code Execution

exploit lpe virit-explorer

Last synced: 17 Mar 2025

https://github.com/lucadibello/weaponizedping

🔫 A weaponized ping implementation that includes concealed data in the packet payload.

exploit icmp-tunnel ping pinger python3

Last synced: 09 Oct 2025

https://github.com/jsmoreira02/sar2html_exploit

Exploit the Sar2HTML RCE vulnerability and also perform a Shell Upload on the target

cybersecurity exploit hacking python3 reverse-shell vulnerability web-exploitation

Last synced: 09 Jul 2025

https://github.com/tigerclips1/ps4jb_update_downloader_usb

What this script does is auto download ps4JB updates that you choose to your USB automation for linux only

automation exploit firmware guide linux ps4 ps4-jailbreak python python-script python3 tigerclips1

Last synced: 14 Apr 2026

https://github.com/hunthubspace/exploit-tracker

A script designed to automatically discover new exploits and save results to a file or integrate with your Discord server. Also search for exploits related to specific CVEs of your choice.

bugbounty cve ethical-hacking exploit penetration-testing-tools web

Last synced: 15 Oct 2025

https://github.com/arpsyndicate/bdu-scores

Бесплатный рейтинг трендовых БДУ уязвимостей по версии VEDAS

bdu exploit exploit-maturity vedas vulnerability

Last synced: 28 Jan 2026

https://github.com/masasron/chameleondump

Dump RFID tag IDs from ChameleonUltra devices

ble chameleonultra exploit

Last synced: 08 Feb 2026

https://github.com/4m3rr0r/cve-2011-2523-poc

Python exploit for CVE-2011-2523 (VSFTPD 2.3.4 Backdoor Command Execution)

cve cve-2011-2523 exploit python security vsftpd-exploit

Last synced: 11 Feb 2026

https://github.com/kube-tarian/kubetak

KubeTaK - Kube Attack. Exploit your K8s cluster and workloads running in it. PenTest K8s. Inspired by the concept of kubesploit by CyberArk and StackHawk.

application-bug application-security bug-fixing exploit kubernetes-attack kubernetes-exploiting penetration-testing pentest pentest-tool pentesting

Last synced: 19 Mar 2026

https://github.com/rcvalle/exploits

Exploits written.

exploit exploits

Last synced: 14 Feb 2026

https://github.com/ebrasha/cve-2024-28000

LiteSpeed Cache Privilege Escalation PoC - CVE-2024-28000

abdal cve-2024-28000 ebrasha exploit litespeed-cache-privilege poc privilege-escalation-poc wordpress

Last synced: 15 Feb 2026

https://github.com/sertrafurr/get-discord-guild-tag-method

New method to get it at 100% without any bots/selfbots

clan discord discord-tag exploit guild method tag

Last synced: 04 Mar 2026

https://github.com/cleilsonandrade/loader-pppwn

PPPwn é um exploit de execução remota de código do kernel para PlayStation 4 até a Firmware 11.00. Baseado na POC compartilhada pelo usuário TheOfficialFloW, foi desenvolvido um script para automação de execução.

backend bash-script exploit pppwn python scapy-library shell-script

Last synced: 05 Mar 2026

https://github.com/0xtas/cve-2012-2982

An exploit for CVE-2012-2982 implemented in Rust

cve-2012-2982 exploit poc rust tryhackme

Last synced: 08 Jun 2026

https://github.com/m3ssap0/wordpress_cve-2018-6389

Tries to exploit a WordPress vulnerability (CVE-2018-6389) which can be used to cause a Denial of Service.

cve-2018-6389 exploit security security-tools vulnerability vulnerability-scanners wordpress

Last synced: 08 May 2026

https://github.com/franckferman/cauchemar-apprendre_le_pwn

Référentiel exhaustif pour acquérir une compréhension approfondie des fondamentaux de l'exploitation de binaires. Fruit d'une démarche analytique rigoureuse, ce guide offre une pédagogie structurée, avec explications détaillées et exemples concrets, pour maîtriser pas à pas l'exploitation de binaires.

apprendre apprendre-les-bases apprendre-pwn binary-exploitation exploit exploit-development exploitation francais francaise france gdb heap-overflow learning pwn pwn-college pwn-course-practice pwndbg pwning reverse-engineering stack-overflow

Last synced: 19 Jan 2026

https://github.com/vandycknick/gitlab-cve-2020-10977

GitLab Arbitrary File Read Exploit

cve-2020-10977 exploit gitlab lfi python rce

Last synced: 17 May 2026

https://github.com/xerosic/leidenfrost

Local privilege escalation on Windows by abusing CMSTP to bypass User Access Control (UAC)

exploit lpe privilege-escalation uac uac-bypass windows

Last synced: 27 Apr 2026

https://github.com/javierolmedo/check-ms17-010

🐞 Simple script in powershell to check ms17-010 vulnerability exploited by ransomware WannaCry

exploit ms17-010 powershell powershell-script script vulnerability wannacry

Last synced: 29 Oct 2025

https://github.com/sarperavci/exploitme

A collection of containerized security vulnerabilities including privilege escalation CVEs and SUID exploits for hands-on penetration testing practice.

ctf cybersecurity docker exploit penetration-testing privilege-escalation security security-training suid vagrant vulnerable

Last synced: 08 Jul 2025

https://github.com/hackingyseguridad/CVE-2021-4034

CVE-2021-4034, exploit para escalado de privilegios en SO Linux a root

cve elevar exploit linux privilegios root vuln

Last synced: 10 Mar 2025

https://github.com/p1ckzi/cve-2022-35513

CVE-2022-35513 | blink1-pass-decrypt

blink1-pass-decrypt blink1control2 cve cve-2022-35513 exploit

Last synced: 25 Mar 2025

https://github.com/lynk4/cve-2011-2523

Python exploit for vsftpd 2.3.4 - Backdoor Command Execution

cve cve-2011-2523 exploit metasploitable metasploitable-2 metasploitable-3 python vsftpd-exploit

Last synced: 24 Apr 2026

https://github.com/3qnrpdwd/juststone

[ JustStoneTransferProtocol&Backdoor ] This project stems from my interest in protocols and security, leading to the creation of a small backdoor and a proprietary protocol.

api backdoor eternalblue exploit protocol rust secure security socket socket-io

Last synced: 25 Apr 2026

https://github.com/sleepytariq/php-8.1.0-dev-backdoor-rce

PHP 8.1.0-dev User-Agentt Backdoor Exploit

exploit php python3

Last synced: 21 May 2026