
GC2-sheet
GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

A native backdoor module for Microsoft IIS (Internet Information Services)

command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the…

The DCERPC only printerbug.py version

Embed a reverse shell in Notion pages using the Notion API as a proxy, enabling stealthy remote shell sessions with encrypted and authenticated…

A POC C2 server and agent to explore just if/how the Ethereum blockchain can be used for C2

Covert C2 framework using QR codes for indirect command execution and result retrieval via HTTP/S, designed for stealthy penetration testing and red…

CVE-2022-1388 F5 BIG-IP iControl REST RCE

CVE-2019-12949

CVE-2025-31644: Command Injection in Appliance mode in F5 BIG-IP

An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access…

Streaming Unexpected Network Byte Sequences with High Probability of Blue Screening or Otherwise Crashing Attacker Command-and-Control Nodes

CVE-2025-20029: Command Injection in TMSH CLI in F5 BIG-IP

the metasploit script(POC) about CVE-2021-36260

The vulnerability allows an attacker with network access to an Erlang/OTP SSH server to execute arbitrary code without prior authentication.

Arbitrary Code Execution on FuguHub 8.4

Citrix Unauthorized Remote Code Execution Attacker - CVE-2019-19781