Lists (1)
Sort Name ascending (A-Z)
Stars
Evaluate the accuracy of LLM generated outputs
A Scrcpy client in Rust & Tarui aimed at providing mouse and key mapping to control Android device, similar to a game emulator
Noodle [Moodle RCE] (v3.4.1) - CVE-2018-1133
AutoPwn Script for Moodle 3.9 leveraging CVE-2020–20282, CVE-2020–14320,CVE-2020–14321
Install Plugin from ZIP - This is a functionality that allows an authenticated user to install arbitrary (modded) extensions and so, remotely run PHP commands on the server. You need elevated privi…
Script to exploit CVE-2018-1042 in order to do internal port scans.
Allows exploiting a moodle from distinct base domains
Modified Moodle exploit for privilege escalation (Dorvack)
This PoC describe how to exploit XSS on Moodle 3.9.2 with Polyglot payload.
Scripts for exploiting MSA-18-0020 (CVE-2018-16854) and MSA-19-0004 (CVE-2019-3847)
A webshell plugin and interactive shell for pentesting a Moodle instance.
This script demonstrates a time-based blind SQL injection on Moodle platforms, exploiting response delays to extract data.
Moodle exploit that turns XSS to RCE
A simple CLI tool 🔨 for analyzing and attacking Moodle installations for pentesters 🔪using various publicly available exploits. Developed using Crystal 💎, the fast, natively compiled Ruby lookalike.
Auto Collect Poc Or Exp from Github by CVE ID.
List of Security Archives Tools and software, generally for facilitate security & penetration research. Opening it up to everyone will facilitate a knowledge transfer. Hopefully the initial set wil…
| FazScan is a Perl program to do some vulnerability scanning and pentesting |
A Python-based tool to detect the CVE-2023-30943 vulnerability in Moodle, which allows unauthorized folder creation via specially crafted requests in TinyMCE loaders.
My Tools For Bug Bounty
pierce403 / droopescan
Forked from SamJoan/droopescanA plugin-based scanner that aids security researchers in identifying issues with several CMSs, mainly Drupal & Silverstripe.
engineering Box (简称 - engineering) 是一个集合github平台上的安全行业从业者自研开源扫描器的仓库,包括子域名枚举、数据库漏洞扫描、弱口令或信息泄漏扫描、端口扫描、指纹识别以及其他大型扫描器或模块化扫描器,同时该仓库只收录各位安全行业从业者自己编写的一般性开源扫描器,类似awvs、nmap、w3af等知名扫描工具不收录,收集全球各位同仁爱好者维护项目