exploits
There are 457 repositories under exploits topic.
The-Art-of-Hacking/h4cker
This repository is primarily maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), artificial intelligence security, vulnerability research, exploit development, reverse engineering, and more.
threat9/routersploit
Exploitation Framework for Embedded Devices
projectdiscovery/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
The-Z-Labs/linux-exploit-suggester
Linux privilege escalation auditing tool
cdk-team/CDK
📦 Make security testing of K8s, Docker, and Containerd easier.
x0rz/EQGRP
Decrypted content of eqgrp-auction-file.tar.xz
ysrc/xunfeng
巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Ascotbe/Kernelhub
:palm_tree:Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details, executable file (提权漏洞合集)
the-akira/Computer-Science-Resources
Collection of resources spanning key areas of Computer Science
TH3xACE/SUDO_KILLER
A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileges on the system, essentially allowing a regular user to execute commands as the root user.
AabyssZG/SpringBoot-Scan
针对SpringBoot的开源渗透框架,以及Spring相关高危漏洞利用工具
anouarbensaad/vulnx
vulnx 🕷️ an intelligent Bot, Shell can achieve automatic injection, and help researchers detect security vulnerabilities CMS system. It can perform a quick CMS security detection, information collection (including sub-domain name, ip address, country information, organizational information and time zone, etc.) and vulnerability scanning.
1N3/Findsploit
Find exploits in local and online databases instantly
adysec/nuclei_poc
Nuclei POC,每日更新 | 自动整合全网Nuclei的漏洞POC,实时同步更新最新POC,保存已被删除的POC。通过批量克隆Github项目,获取Nuclei POC,并将POC按类别分类存放,使用Github Action实现。已有19w+POC,已校验格式的有效性并去重(验证的是格式的有效性)
XiphosResearch/exploits
Miscellaneous exploit code
openclarity/openclarity
OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure
stealthcopter/deepce
Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)
jxy-s/herpaderping
Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.
topscoder/nuclei-wordfence-cve
60k+ WordPress Nuclei templates, updated daily from Wordfence intel—filter by severity/tags/CVE and scan in one line. 🚀🔒
nccgroup/featherduster
An automated, modular cryptanalysis tool; i.e., a Weapon of Math Destruction
dark-lbp/isf
ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python
rastating/wordpress-exploit-framework
A Ruby framework designed to aid in the penetration testing of WordPress systems.
rfunix/Pompem
Find exploit tool
1N3/PrivEsc
A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.
toolswatch/vFeed
The Correlated CVE Vulnerability And Threat Intelligence Database API
sundaysec/Android-Exploits
A collection of android Exploits and Hacks
tenable/routeros
RouterOS Security Research Tooling and Proof of Concepts
pedrib/PoC
Advisories, proof of concept files and exploits that have been made public by @pedrib.
googleprojectzero/0days-in-the-wild
Repository for information about 0-days exploited in-the-wild.
GossiTheDog/HiveNightmare
Exploit allowing you to read registry hives as non-admin on Windows 10 and 11
hackerschoice/THC-Archive
All releases of the security research group (a.k.a. hackers) The Hacker's Choice
StarCrossPortal/scalpel
scalpel是一款命令行漏洞扫描工具,支持深度参数注入,拥有一个强大的数据解析和变异算法,可以将常见的数据格式(json, xml, form等)解析为树结构,然后根据poc中的规则,对树进行变异,包括对叶子节点和树结构 的变异。变异完成之后,将树结构还原为原始的数据格式。
spencerdodd/kernelpop
kernel privilege escalation enumeration and exploitation framework
0xdea/exploits
A handy collection of my public exploits, all in one place.
smallcham/sec-admin
分布式资产安全扫描核心管理系统(弱口令扫描,漏洞扫描)
jm33-m0/mec
for mass exploiting