
PISmith
PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses
Tools for creating and customizing malicious code or instructions to execute after exploitation.

PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…


Super Forms Unauthenticated File Upload RCE | CVSS 9.8

A tool designed to exploit CVE-2025-54068 and Remote Command Execution if the APP_KEY of the Livewire project is known.

Next.js RSC RCE Exploit Tool (CVE-2025-55182)

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting


Recreating Shellshock (CVE-2014-6271) - the bash vulnerability that endangered millions of servers. Automated exploitation toolkit + Burp Suite…


its simple Shellshock exploit

CVE-2026-38526 exploit for Krayin CRM v2.2.x - Authenticated RCE via TinyMCE file upload bypass. Features interactive shell, multi-type payloads,…

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499

CVE-2026-49049 Helix3 (JoomShaper) Joomla Unauthenticated AJAX RCE Scanner

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499


cve-2019-5420 POC simple ruby script
