GitHunt

Chokri Hammedi

blue0x1

Languages

Python65%PHP9%C#9%Shell4%Go4%Java4%JavaScript4%

Repos

41

Stars

222

Forks

25

Top Language

Python

Loading contributions...

Top Repositories

Repositories

41
BL
blue0x1/uac-bypass-oneliners

Collection of one-liners to bypass User Account Control (UAC) in Windows. These techniques exploit certain behavior in Windows applications to elevate privileges.

16014Updated 1 year ago
uacuac-bypassuacbypass
BL
blue0x1/awesome-curl-reverseshell-oneliners

Collection of efficient curl one-liners for executing reverse shells, ideal for development and security testing.

40Updated 1 year ago
awesome-listcurlhackingonelinersredteamredteamingreverse-shell
BL
blue0x1/mobilemouse-exploit

Mobile Mouse 3.6.0.4 could allow a remote attacker to execute arbitrary code on the system, caused by improper input validation. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Python124Updated 1 year ago
cve-2023-31902
BL
blue0x1/windows-linux-php-reverse-shell

This is a simple PHP reverse shell that works on both Windows and Linux systems. It lets you specify the operating system via a query parameter, and will execute a PowerShell reverse shell on Windows or a bash reverse shell on Linux.

PHP32Updated 1 year ago
linux-reverse-shellphpphp-reverse-shellreverse-shellwindows-php-reverse-shellwindows-reverse-shell
BL
blue0x1/mybbFork

MyBB is a free and open source forum software.

00Updated 2 months ago
BL
blue0x1/WBCE-CMS-1.6.4-exploit

WBCE CMS 1.6.4 Remote Code Execution: WBCE CMS version 1.6.4 contains a critical remote code execution vulnerability in the Droplets module. Authenticated attackers with administrator privileges can inject and execute arbitrary PHP code, leading to complete system compromise.

00Updated 4 months ago
BL
blue0x1/RiteCMS-3.1.0-rce-exploit

RiteCMS v3.1.0 contains an authenticated Remote Code Execution (RCE) via its content_function() handler: [function:...] tags in page content are evaluated, allowing a user with page-editing privileges to execute arbitrary PHP on the server.

00Updated 4 months ago
BL
blue0x1/Remote-for-Windows-2024.15-RCE

Remote for Windows 2024.15 - RCE Exploit

Python10Updated 9 months ago
BL
blue0x1/Remote-for-Windows-2024.15-Unauthenticated-Desktop-Screenshot-Capture-Exploit

Remote for Windows version 2024.15 suffers from a missing authentication vulnerability that allows for the disclosure of desktop screenshots.

Python10Updated 10 months ago
BL
blue0x1/sqlwinds

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit

C#00Updated 6 months ago
microsoft-sql-servermssqlmssql-clientpentestred-teamingredteam-toolssqlsqlwinds
BL
blue0x1/Silk

Silk Chat is a secure, single-file PHP shoutbox requiring no setup. It uses AES-256 encryption for data storage and operates without logs, ensuring private and encrypted communication.

PHP00Updated 6 months ago
aes-256aes-encryptionchatphpprivacyprivate-messagingshoutboxsilksilk-shoutbox
BL
blue0x1/panzer

Panzer ProxyFinder is a command-line tool designed to quickly and easily find public proxies. By searching multiple websites, it can quickly and efficiently compile a list of working proxies that can be used for a variety of purposes, such as web scraping, penetration testing, or anonymity.

Shell10Updated 2 years ago
freeproxyproxy-checker
BL
blue0x1/cothon

cothon framework: A stealthy command & control (C2) framework designed for ethical penetration testing and red team operations.

Python20Updated 1 year ago
BL
blue0x1/AirKeyboard-1.9.0.0-Integer-Overflow-dos

AirKeyboard 1.9.0.0 Integer Overflow to Remote Denial of Service (DoS)

Python00Updated 9 months ago
BL
blue0x1/airkeyboard-ios-exploit

AirKeyboard iOS App Version 1.0.5 - Remote Input Injection

Python00Updated 9 months ago
BL
blue0x1/metasploit-frameworkFork

Metasploit Framework

00Updated 6 months ago
BL
blue0x1/Remote-for-Mac-2025.6-Desktop-Stream-Disclosure

Remote for Mac version 2025.6 suffers from an unauthenticated desktop stream disclosure vulnerability.

Python00Updated 9 months ago
BL
blue0x1/Remote-for-Mac-2025.6-Remote-Code-Execution-Exploit

Remote for Mac version 2025.6 allows an unauthenticated remote attacker to achieve remote code execution by sending a crafted sequence of UDP packets that simulate keyboard input.

Python00Updated 9 months ago
BL
blue0x1/Remote-for-Windows-2024.15-Unauthenticated-Arbitrary-Input

Remote for Windows 2024.15 Unauthenticated Arbitrary Input

Python00Updated 9 months ago
BL
blue0x1/Remote-for-Windows-unauthenticated-rce

The Remote for Windows helper service exposes unauthenticated RCE through the executeScript API endpoint. This allows SYSTEM-level command execution via crafted HTTP requests.

Python00Updated 10 months ago
BL
blue0x1/Remote-for-Windows-2024.15-liveview-exploit

Remote for Windows 2024.15 - Unauthenticated SYSTEM Desktop Stream Exploit Vulnerable Component: Helper app Live View feature (raw H264 over TCP) Live View H264 per default is enabled.

Python00Updated 10 months ago
BL
blue0x1/Remote-Keyboard-Desktop-RCE

This exploit abuses the Remote Keyboard Desktop 1.0.1 WebSocket interface to simulate keystrokes and execute a remote payload via SMB, leading to unauthenticated remote code execution on Windows systems.

Python00Updated 10 months ago
BL
blue0x1/dotx

dotx - A hunter for exposed dotfiles and misconfigured secrets

Go00Updated 10 months ago
dotfilesethical-hackinggolangsecrets-managementsecurity-tools
BL
blue0x1/Arescan

Arescan is a powerful web directory discovery tool that helps you uncover hidden directories and links on any website. By performing a breadth-first search.

Python315Updated 2 years ago
directory-analyzerscanner-webtoolswebscanner
BL
blue0x1/Clover

Clover P2P Reverse Shell allows you to establish a a decentralized peer-to-peer (P2P) connection between two computers and execute shell commands on the remote computer.

Python40Updated 2 years ago
c2p2predteam-tools
BL
blue0x1/Mago

Mago is a JavaFX-based shell generator tool that creates payloads for Linux, Windows systems and web. It features a simple GUI for easy configuration and supports Base64 and URL encoding.

Java10Updated 1 year ago
javajavafxlinux-shellmagoreverse-shellwebshellwindows
BL
blue0x1/winEnv-Variables-reverse-shell

A persistent reverse shells by leveraging Windows environment variables. It provides a stealthy and convenient way to store and execute PowerShell reverse shells, enabling on-demand execution across sessions.

00Updated 1 year ago
persistencereverse-shellwindowswindows-reverse-shell
BL
blue0x1/SofaWiki-3.9.2-Shell-Upload-open-tickets

No description provided.

Python10Updated 1 year ago
BL
blue0x1/hannibal

bypass av reverse shell in windows

C#10Updated 1 year ago
BL
blue0x1/Vocal-xss

The Vocal XSS demonstrates proof-of-concept scripts for exploiting voice-based Cross-Site Scripting (XSS) in web applications.

JavaScript00Updated 1 year ago

Gists

Recent Activity

Chokri Hammedi (blue0x1) | GitHunt