• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

credential

  1. itsMe

    C/C++ Golang Credential Stealer [GO]

    Demonstration of gaining access into cookies & login credentials. Currently only supports firefox & chrome, planning to support edge but i have no interest in any other browser since the main purpose of this repo is just as demonstration. Hidden content
  2. itsMe

    Credential digger: identifies hardcoded credentials

    Credential Digger is a GitHub scanning tool that identifies hardcoded credentials (Passwords, API Keys, Secret Keys, Tokens, personal information, etc), filtering the false positive data through machine learning models. It supports Python 3.6 and works only with LINUX systems. Architecture...
  3. itsMe

    Chalumeau - Automated, Extendable And Customizable Credential Dumping Tool

    Chalumeau is automated,extendable and customizable credential dumping tool based on powershell and python. Main Features     Write your own Payloads     In-Memory execution     Extract Password List     Dashboard reporting / Web Interface     Parsing Mimikatz     Dumping Tickets Known Issues...
  4. 1

    Exploits Carel pCOWeb HVAC Insecure Credential Storage

    The Carel pCOWeb card stores password hashes in the file /etc/passwd, allowing privilege escalation by authenticated users. Additionally, plaintext copies of the passwords are stored. Version A 1.4.11 - B 1.4.2 is affected. View the full article
  5. 1

    Exploits Hisilicon HiIpcam V100R003 Remote ADSL Credential Disclosure

    Hisilicon HiIpcam V100R003 suffers from a remote credential disclosure vulnerability. View the full article
  6. 1

    Exploits Western Digital My Book World II NAS 1.02.12 Hardcoded Credential

    Western Digital My Book World II NAS versions 1.02.12 and below have a hard-coded ssh credential that allows for remote command execution. View the full article
  7. 1

    Exploits LastPass Credential Leak From Previous Site

    LastPass suffers from an issue where bypassing do_popupregister() leaks credentials from the previous site. View the full article
  8. 1

    Exploits FortiOS 5.6.7 / 6.0.4 Credential Disclosure

    FortiOS versions 5.6.3 through 5.6.7 and 6.0.0 through 6.0.4 suffer from a credential disclosure vulnerability. View the full article
  9. 1

    Exploits FortiOS 5.6.7 / 6.0.4 Credential Disclosure

    This Metasploit module exploits FortiOS versions 5.6.3 through 5.6.7 and 6.0.0 through 6.0.4 to leverage a credential disclosure vulnerability by reading the /dev/cmdb/sslvpn_websession file. View the full article
  10. 1

    Exploits WolfVision Cynap 1.18g / 1.28j Hardcoded Credential

    WolfVision Cynap versions 1.18g and 1.28j suffer from a hardcoded credential vulnerability. View the full article
  11. 1

    Exploits FaceSentry Access Control System 6.4.8 Authentication Credential Disclosure

    FaceSentry Access Control System version 6.4.8 suffers from a cleartext transmission of sensitive information. This allows a remote attacker to intercept the HTTP Cookie authentication credentials via a man-in-the-middle attack. View the full article
  12. 1

    Exploits Telus Actiontec T2200H WiFi Credential Disclosure

    Telus Actiontec T2200H with firmware T2200H-31.128L.08 suffers from a credential disclosure vulnerability. An HTTP interface used by wireless extenders to pull the modem's wifi settings uses DHCP client-provided option values to restrict access to this API. By forging DHCP packets, one can...
  13. 1

    Exploits Amcrest IPM-721S Credential Disclosure / Privilege Escalation

    Amcrest IPM-721S suffers from credential disclosure, privilege escalation, and a long list of other vulnerabilities. View the full article
  14. itsMe

    Scavenger - Crawler Searching For Credential Leaks On Different Paste Sites

    Just the code of my OSINT bot searching for sensitive data leaks on different paste sites. Search terms:     credentials     private RSA keys     Wordpress configuration files     MySQL connect strings     onion links     links to files hosted inside the onion network (PDF, DOC, DOCX...
  15. 1

    Exploits Arris Touchstone TG1672 Credential Disclosure

    Administrative credentials submitted to the Arris Touchstone TG1672 are sent over HTTP base64 encoded in a GET request. View the full article
  16. 1

    Exploits Avast Anti-Virus Local Credential Disclosure

    Avast Anti-Virus versions prior to 19.1.2360 suffer from a local credential disclosure vulnerability. View the full article
  17. 1

    Exploits BEWARD Intercom 2.3.1 Credential Disclosure

    BEWARD Intercom version 2.3.1 suffers from a credential disclosure vulnerability. View the full article
  18. 1

    Exploits FortiGate FortiOS LDAP Credential Disclosure

    FortiGate FortiOS versions prior to 6.0.3 suffer from an LDAP credential disclosure vulnerability. View the full article
  19. 1

    Exploits D-Link DIR-140L / DIR-640L Credential Disclosure

    D-Link DIR-140L and DIR-640L suffer from an administrative credential disclosure vulnerability. View the full article
  20. 1

    Exploits D-Link DSL-2770L / DIR-140L / DIR-640L Credential Disclosure

    D-Link DSL-2770L, DIR-140L, DIR-640L, DWR-116, DWR-512, DWR-555, and DWR-921 all suffer from an administrative credential disclosure vulnerability. View the full article
Back
Top