Home Tools Page 435

Tools

The latest hacking and hacker tools. Open source offensive and defensive security tools. Browse interactive maps of offensive security tools used by malicious actors and cybercriminals. Check out some live threat maps and malware intelligence databases.

This will be a curated list of mostly open source hacking tools. These can range from Red Teaming offensive security tools to fuzzers and debuggers for malware analysis. We are always looking for new state of the art tools that can be used for security professionals. Please feel free to send us a tool via email or one of our social media accounts.

Pluck CMS 4.7.13 Remote Shell Upload

Authored by Ron Jost Pluck CMS version 4.7.13 suffers from a remote shell upload vulnerability. advisories | CVE-2020-29607 Change Mirror Download # Exploit Title: Pluck CMS 4.7.13 - File Upload Remote Code Execution...

i-doit 1.15.2 Cross Site Scripting

Authored by nu11secur1ty i-doit version 1.15.2 suffers from a cross site scripting vulnerability. advisories | CVE-2021-3151 Change Mirror Download # Exploit Title: SXX for i-doit 1.15.2 in parameret (viewMode) from Infrastructure# Author: @nu11secur1ty#...

nginx 1.20.0 DNS Resolver Off-By-One Heap Write

Authored by Markus Vervier, Eric Sesterhenn, Luis Merino An off-by-one error in ngx_resolver_copy() while processing DNS responses allows a network attacker to write a dot character ('.', 0x2E) out of...

iDailyDiary 4.30 Denial Of Service

Authored by Ismael Nava iDailyDiary version 4.30 suffers from a denial of service vulnerability. Change Mirror Download # Exploit Title: iDailyDiary 4.30 - Denial of Service (PoC)# Date: 2021-05-21# Exploit Author: Ismael...

Shopizer 2.16.0 Cross Site Scripting

Authored by Marek Toth Shopizer versions 2.16.0 and below suffer from multiple cross site scripting vulnerabilities. Change Mirror Download # Exploit Title: Shopizer <= 2.16.0 - Multiple Cross-Site Scripting (XSS)# Date: 23-05-2021#...

PHP 8.1.0-dev Backdoor Remote Command Injection

Authored by Richard Jones PHP version 8.1.0-dev backdoor unauthenticated remote command injection exploit. Change Mirror Download # Exploit Title: PHP 8.1.0-dev (backdoor) | Remote Command Injection (Unauthenticated)# Date: 23/05/2021# Exploit Author: Richard...

Schlix CMS 2.2.6-6 Shell Upload / Directory Traversal

Authored by Emir Polat Schlix CMS version 2.2.6-6 suffers from an arbitrary file upload and a directory traversal that together can lead to remote command execution. Change Mirror Download # Exploit Title:...

Backdoor.Win32.Spion4 Insecure Transit

Authored by malvuln | Site malvuln.com Backdoor.Win32.Spion4 malware suffers from insecure transit issues. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/cb02d2f323db18d7415dca47bceab9db.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Spion4Vulnerability: Insecure TransitDescription: SPION...

Codiad 2.8.4 Remote Code Execution

Authored by Ron Jost Codiad version 2.8.4 suffers from a remote code execution vulnerability. advisories | CVE-2019-19208 Change Mirror Download # Exploit Title: Codiad 2.8.4 - Remote Code Execution (Authenticated) (2)# Date: 21.05.2021#...

Backdoor.Win32.Tonerok.d Code Execution

Authored by malvuln | Site malvuln.com Backdoor.Win32.Tonerok.d malware suffers from a code execution vulnerability. Change Mirror Download Discovery / credits: Malvuln - malvuln.com (c) 2021Original source: https://malvuln.com/advisory/b297c565899ace88f40e5da833f41561.txtContact: [email protected]: twitter.com/malvulnThreat: Backdoor.Win32.Tonerok.dVulnerability: Unauthenticated Remote...