#1Tools for creating and customizing malicious code or instructions to execute after exploitation.
Kitploit recommended

CVE-2022-29464 POC exploit
Write Behinder_webshell to target using CVE-2022-39952

CVE-2018-15961 — ᴀᴅᴏʙᴇ ᴄᴏʟᴅғᴜsɪᴏɴ (ʀᴄᴇ)

Exploit for CVE-2023-46604

Remote code execution in CA APM Team Center (Wily Introscope)

「💥」CVE-2022-4944: KodExplorer <= 4.49 - CSRF to Arbitrary File Upload

A very simple MSDT "Follina" exploit **patched**

Exploit POC for the bug CVE-2019-8781, found by @LinusHenze

PoC for CVE-2024-25641 Authenticated RCE on Cacti v1.2.26

Proof-of-concept exploit for CVE-2024-53677 (S2-067), an Apache Struts2 file upload logic bypass enabling remote code execution via crafted filename…

Proof-of-concept exploit for CVE-2020-2555, demonstrating remote code execution via deserialization in Oracle WebLogic Server.

CVE-2017-0199复现

⭐️The famous XWorm RAT, version 2.1. Educational purposes only

simple exp for CVE-2025-24813

Python exploit for Roundcube Webmail DOM-based XSS (CVE-2026-25916) via SVG href attributes, enabling session hijacking and data exfiltration through…

awslabs/sockeye Code injection via unsafe YAML loading CVE-2021-43811

Python proof-of-concept for detecting CVE-2023-27372 in SPIP CMS. Scans single or multiple URLs for the vulnerability and outputs results to terminal…

CVE-2022-36200 PoC