
CVE-2026-15409
Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…
Tools for extracting sensitive data from compromised systems without detection.

Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code…


Reuse open handles to dynamically dump LSASS.

Database components for RCS backend

PCI Express DIY hacking toolkit for Xilinx SP605. This repository is also home of Hyper-V Backdoor and Boot Backdoor, check readme for links and info

The Joomla extension PhocaCommander is vulnerable to Path Traversal in delete, copy, move actions

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

PowerSploit - A PowerShell Post-Exploitation Framework

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

Teamsniper is a tool for fetching keywords in a Microsoft Teams such as (passwords, emails, database, etc.).

Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications

More examples using the Impacket library designed for learning purposes.

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

Our Friendly Gmail will act as Server and implant will exfiltrate data via smtp and will read commands from C2 (Gmail) via imap protocol

C# Tool to interact with MS Exchange based on MS docs

A standalone Blind XSS Script.