Skip to content

ExploitTool — Active Exploitation

ExploitTool actively exploits confirmed vulnerability findings, proving impact through actual data extraction, token forging, session hijacking, or command execution.

Actions

ActionPurpose
exploitActively exploit a confirmed finding
verifyRe-run PoC to confirm a finding is still exploitable
listShow available exploit types

Exploit Types (13)

Web Application

TypeDescription
sqli-auth-bypassBypass authentication via SQL injection
sqli-data-extractionExtract database contents via SQL injection
auth-bypassAuthentication bypass (non-SQLi vectors)
mass-assignmentExploit mass assignment vulnerabilities
idorInsecure Direct Object Reference
idor-user-dataIDOR targeting user-specific data
file-uploadMalicious file upload to achieve RCE

Token & Session

TypeDescription
jwt-none-algJWT none algorithm bypass
jwt-algo-confusionJWT algorithm confusion attack
jwt-key-exposureJWT key exposure exploitation

Client-Side

TypeDescription
xss-domDOM-based XSS exploitation
xss-storedStored XSS exploitation
xss-reflectedReflected XSS exploitation

Blockchain / DeFi

TypeDescription
flash-loan-drainDrain liquidity pools via flash loan attacks
reentrancy-drainReentrancy-based fund extraction
oracle-manipulationManipulate price oracles for profit
nonce-reuse-crackCrack keys from nonce reuse
proxy-storage-collisionExploit proxy storage collisions

Usage

Exploiting a finding

ExploitTool(
  action="exploit",
  findingId="finding-004",
  exploitType="sqli-auth-bypass",
  target="http://target.com/login"
)

Verifying exploitation

ExploitTool(
  action="verify",
  findingId="finding-004",
  exploitType="sqli-auth-bypass",
  target="http://target.com/login"
)

Listing available exploit types

ExploitTool(action="list")

Output

Exploitation results include:

  • Success/failure status
  • Proof-of-concept evidence (extracted data, forged tokens, session cookies)
  • Impact description
  • Suggested next steps (AttackChainTool for chaining)

Released under the MIT License.