Quantcast
Channel: Exploits – Security List Network™
Browsing index pages (514 articles)

Image may be NSFW.
Clik here to view.

SIXNETtools – Tool for exploitation sixnet RTUs.

Legal Disclaimer: This Tools for Research and Learning Purpose Only! The goal of SIXNETtools was to demonstrate the critical lack of security inherent in certain applications on a SCADA network. This...

View Article


Image may be NSFW.
Clik here to view.

Ikeext-Privesc : Windows IKEEXT DLL Hijacking Exploits Tool.

LEGAL DISCLAMER The author does not hold any responsibility about the bad use of this script, remember that attacking targets without prior concent its ilegal and punish by law, this script was build...

View Article


Image may be NSFW.
Clik here to view.

bst – Binary String Toolkit.

Summary The Binary String Toolkit or BST for short is a rather simple utility to convert binary strings to various formats suitable for later inclusions in source codes such as those used to develop...

View Article

Image may be NSFW.
Clik here to view.

ROPGenerator is a tool that makes ROP exploits easy.

ROPGenerator is a tool that makes ROP exploits easy. It enables you to automatically find gadgets or build ROP chains. The current version supports x86 and x64 binaries. Overview ROPGenerator uses the...

View Article

Image may be NSFW.
Clik here to view.

AutoSploit – Automated Mass Exploiter.

LEGAL DISCLAMER! The author does not hold any responsibility about the bad use of this script, remember that attacking targets without prior concent its ilegal and punish by law, this script was build...

View Article


Image may be NSFW.
Clik here to view.

roxysploit is a community-supported, open-source and penetration testing suite.

Legal Disclamer: The author does not hold any responsibility for the bad use of this tool, remember that attacking targets without prior consent is illegal and punished by law. roxysploit is a...

View Article

Image may be NSFW.
Clik here to view.

Meltdown Exploits PoC.

Meltdown Exploit PoC is a Speculative optimizations execute code in a non-secure manner leaving data traces in microarchitecture such as cache. How it works? It works by using /proc/kallsyms to find...

View Article

Image may be NSFW.
Clik here to view.

ChimayRed – Reverse engineering of Mikrotik exploits from Vault 7 CIA Leaks.

LEGAL DISCLAMER: The author does not hold any responsibility about the bad use of this script, remember that attacking targets without prior concent its ilegal and punish by law, this script was build...

View Article


Image may be NSFW.
Clik here to view.

ASLRay – Linux ELF x32/x64 ASLR DEP/NX bypass exploits with stack-spraying.

ASLRay is a Linux ELF x32/x64 ASLR DEP/NX bypass exploit with stack-spraying. Properties: + ASLR bypass + DEP/NX bypass + Cross-platform + Minimalistic + Simplicity + Unpatchable Dependencies: – Linux...

View Article


Image may be NSFW.
Clik here to view.

WLT3Serial – Native Java-based deserialization exploits for WebLogic T3 (and...

WLT3Serial is an Native Java-based deserialization exploit for WebLogic T3 (and T3S) listeners (as outlined HERE). Requires third-party dependencies ysoserial and wlthint3client....

View Article

Image may be NSFW.
Clik here to view.

kernelpop – kernel privilege escalation enumeration and exploitation framework.

kernelpop is a framework for performing automated kernel privilege escalation exploit enumeration on Linux, Mac-OSX, and Windows hosts. The default mode runs with the command python3 kernelpop.py. This...

View Article

Image may be NSFW.
Clik here to view.

cmsPoc – A CMS Exploits Framework.

Legal Disclaimer: This project is made for educational and ethical testing purposes only。It is the end user’s responsibility to obey all applicable local, state and federal laws. Developers assume no...

View Article

Image may be NSFW.
Clik here to view.

Sickle is a shellcode development tool.

Sickle is a shellcode development tool, created to speed up the various steps needed to create functioning shellcode. Sickle can aid in the following: – Identifying instructions resulting in bad...

View Article


Image may be NSFW.
Clik here to view.

EKFiddle – A framework to study Exploits Kits.

EKFiddle is A framework based on the Fiddler web debugger to study Exploit Kits, malvertising and malicious traffic in general. EKFiddle Features: + Toolbar buttons + QuickSave + VPN; With EKFiddle...

View Article

Image may be NSFW.
Clik here to view.

redsails – a post exploitation for bypassing host based security monitoring...

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. A post-exploitation tool capable of: + maintaining persistence on a compromised...

View Article


Image may be NSFW.
Clik here to view.

Ironsquirrel – Encrypted browser exploits delivery for the masses.

Ironsquirrel project aims at delivering browser exploits to the victim browser in an encrypted fashion. Ellyptic-curve Diffie-Hellman (secp256k1) is used for key agreement and AES is used for...

View Article

Image may be NSFW.
Clik here to view.

Siofra – DLL Hijacking Vulnerability Scanner and PE Infection Tool.

Legal Disclaimer: Don’t Use at production machine or your daily computer/laptop, This post Security Research purpose only; You Can Learn how to identify and exploit DLL hijacking vulnerabilities within...

View Article


Image may be NSFW.
Clik here to view.

ysoserial v0.0.6 – a POC tool for payload generator that exploits unsafe Java...

Disclaimer: This software has been created purely for the purposes of academic research and for the development of effective defensive techniques, and is not intended to be used to attack systems...

View Article

Image may be NSFW.
Clik here to view.

pyparser – common vulnerability and exploits.

PyParser is a vulnerability parser that looks for CVE’s from different sources. It employs the Shodan API, has the ability to retrieve and process data from CVE Mitre and comes with fucntionality to...

View Article

Image may be NSFW.
Clik here to view.

sjet – a JMX exploitation toolkit.

sjet is A JMX exploitation toolkit. what is a Java Management Extensions(JMX): Java Management Extensions (JMX) is a Java technology that supplies tools for managing and monitoring applications, system...

View Article
Browsing index pages (514 articles)


Latest Images