
RedbloodC2
Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

CVE-2022-31245: RCE and domain admin privilege escalation for Mailcow

Open-Source Remote Administration Tool For Windows C# (RAT)

Basic Multiplatform Remote Administration Tool - Xamarin

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS…

Automated exploit for CVE-2025-69212 command injection in OpenSTAManager, featuring admin authentication, malicious ZIP upload, and reverse shell or…

Exploit for CrushFTP CVE-2025-31161 auth bypass: detects vulnerable targets, enumerates users, and creates unauthorized admin accounts through…

Python Exploit for CVE: 2018-9276

CVE-2019-1040 with Kerberos delegation

Proof-of-concept demonstrating command injection in NETIS WF2409E router's ping and traceroute functions, allowing arbitrary command execution via…

Proofpoint Email Gateway: Low level authenticated user to admin RCE

Proof-of-concept for OS command injection in Curo UC300 IP phone admin panel, demonstrating arbitrary command execution via the IP Addr parameter.

Go implementation of NoPac, exploiting CVE-2021-42278 and CVE-2021-42287

patched to work