Sonar helps you commit clean code every time. With over 225 unique rules to find Python bugs, code smells & vulnerabilities, Sonar finds the issues while you focus on the work. Learn more →
Top 19 Python Exploitation Projects
-
Project mention: [GitHub Action]: Wrappers for sqlmap, bbot and nikto | reddit.com/r/cybersecurity | 2023-05-29
Its not that much of a tool than wrappers of few awesome tools that most of you probably know and use today - sqlmap, bbot and nikto.
-
-
CodiumAI
TestGPT | Generating meaningful tests for busy devs. Get non-trivial tests (and trivial, too!) suggested right inside your IDE, so you can code smart, create more value, and stay confident when you push.
-
-
-
Project mention: GitHub - corkami/collisions: Hash collisions and exploitations - a tool which can manipulate hash quines | reddit.com/r/crypto | 2023-04-16
-
-
sam-the-admin
Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user
-
InfluxDB
Access the most powerful time series database as a service. Ingest, store, & analyze all types of time series data in a fully-managed, purpose-built database. Keep data forever with low-cost storage and superior data compression.
-
AutoPWN-Suite
AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.
Project mention: AutoPWN Suite | I've created a python script for scanning vulnerabilities and downloading exploits automatically. | reddit.com/r/programming | 2022-06-19 -
-
SUID3NUM
A standalone python script which utilizes python's built-in modules to enumerate SUID binaries, separate default binaries from custom binaries, cross-match those with bins in GTFO Bin's repository & auto-exploit those, all with colors! ( ͡~ ͜ʖ ͡°)
-
-
Project mention: Where do you get your information regarding new vulnerabilities and security risks? | reddit.com/r/sysadmin | 2023-05-09
intothewild - https://github.com/gmatuz/inthewilddb/blob/master/rss.xml
-
DevBrute
DevBrute is a Password Brute Forcer, It can Brute Force almost all Social Media Accounts or Any Web Application.
You will have to use a tool to bruteforce. Wordlists are just passwords in a list. A bruteforcer uses the list and tries each password one by one. So in short you could use some bruteforcer like https://github.com/shivamksharma/DevBrute
-
paracosme
Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64.
Project mention: CVE-2022-33318, Remote Code Execution in ICONICS Genesis64 GENESIS64™ is an advanced HMI SCADA solution suite designed for Microsoft operating systems. | reddit.com/r/Hacking_Tutorials | 2022-08-23 -
Project mention: Sharing my extensive CTF cheat sheet, startup guide, resource list, and writeup repository: | reddit.com/r/netsecstudents | 2023-02-03
-
-
-
-
-
Sonar
Write Clean Python Code. Always.. Sonar helps you commit clean code every time. With over 225 unique rules to find Python bugs, code smells & vulnerabilities, Sonar finds the issues while you focus on the work.
Python Exploitation related posts
- GitHub - corkami/collisions: Hash collisions and exploitations - a tool which can manipulate hash quines
- sqlmap wiki githib
- SQLMap on a webapp
- The Epstein court documents have just been released, over 2000 pages with list of people on that island
- sqlmap
- WebGoat - SQL Injection (advanced) Part 5 - I'm having trouble to get the columns of any table
- Aiuto con prova SQL injection
-
A note from our sponsor - Sonar
www.sonarsource.com | 31 May 2023
Index
What are some of the best open-source Exploitation projects in Python? This list will help you:
Project | Stars | |
---|---|---|
1 | SQLMap | 27,074 |
2 | fsociety | 8,563 |
3 | AutoSploit | 4,762 |
4 | commix | 3,830 |
5 | collisions | 2,474 |
6 | featherduster | 1,025 |
7 | sam-the-admin | 899 |
8 | AutoPWN-Suite | 787 |
9 | pwndra | 584 |
10 | SUID3NUM | 539 |
11 | Vailyn | 173 |
12 | inthewilddb | 133 |
13 | DevBrute | 126 |
14 | paracosme | 78 |
15 | LearnPwn | 75 |
16 | exploits_challenges | 60 |
17 | sedoppkit | 48 |
18 | Backdoorcreator | 41 |
19 | shelf | 14 |