Home Tools

Tools

The latest hacking and hacker tools. Open source offensive and defensive security tools. Browse interactive maps of offensive security tools used by malicious actors and cybercriminals. Check out some live threat maps and malware intelligence databases.

This will be a curated list of mostly open source hacking tools. These can range from Red Teaming offensive security tools to fuzzers and debuggers for malware analysis. We are always looking for new state of the art tools that can be used for security professionals. Please feel free to send us a tool via email or one of our social media accounts.

Saltstack Minion Payload Deployer

0
Authored by h00die, c2Vlcgo | Site metasploit.com This Metasploit exploit module uses saltstack salt to deploy a payload and run it on all targets which have been selected (default all)....

WordPress Duplicator 1.3.26 Arbitrary File Read

0
Authored by nam3lum WordPress Duplicator plugin version 1.3.26 suffers from an unauthenticated arbitrary file read vulnerability. advisories | CVE-2020-11738 Change Mirror Download # Exploit Title: Wordpress Plugin Duplicator 1.3.26 - Unauthenticated Arbitrary File...

Chrome DataElement Out-Of-Bounds Read

0
Authored by Google Security Research, Mark Brand Chrome suffers from an out-of-bounds read vulnerability in network DataElement struct traits. advisories | CVE-2020-16041

PowerVR PMRMMapPMR() Writability Check

Authored by Jann Horn, Google Security Research PowerVR has a security issue where a writability check in PMRMMapPMR() does not clear VM_MAYWRITE.

Joomla SexyPolling 2.1.7 SQL Injection

Authored by Wolfgang Hotwagner Joomla SexyPolling version 2.1.7 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: Joomla Plugin SexyPolling 2.1.7 - SQLi# Google Dork: intext:"Powered by Sexy...

WordPress Theme Medic 1.0.0 Weak Password Recovery Mechanism

Authored by Amirhossein Bahramizadeh WordPress Theme Medic theme version 1.0.0 suffers from having a weak password recovery mechanism for the forgot password flow. advisories | CVE-2020-11027 Change Mirror Download # Exploit Title: WordPress...

GUnet OpenEclass E-learning 3.15 File Upload / Command Execution

0
Authored by Georgios Tsimpidas, Frey GUnet OpenEclass E-learning platform version 3.15 suffers from an unrestricted file upload vulnerability in certbadge.php that allows for remote command execution. advisories | CVE-2024-31777 Change Mirror Download import...

Police Crime Record Management System 1.0 Cross Site Scripting

0
Authored by Omer Hasan Durmus Police Crime Record Management System version 1.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: Police Crime Record Management System 1.0...

Trojan.Win32.Razy.abc MVID-2024-0678 Insecure Permissions

Authored by malvuln | Site malvuln.com Trojan.Win32.Razy.abc malware suffers from an insecure permissions vulnerability. Change Mirror Download Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2024Original source: https://malvuln.com/advisory/0eb4a9089d3f7cf431d6547db3b9484d.txtContact: [email protected]: twitter.com/malvulnThreat: Trojan.Win32.Razy.abcVulnerability:...

osCommerce 2.3.4.1 Remote Code Execution

Authored by Bryan Leong osCommerce version 2.3.4.1 remote code execution exploit. This is a variant of the original discovery of code execution in this version by Simon Scannell in March...