
metasploit-framework
Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Tool to check if an IP of a DblTek GoIP is vulnerable to a challenge-response login system, send SMS messages from the system, execute remote…

CVE-2024-3400 PAN-OS: OS Command Injection Vulnerability in GlobalProtect

CTT-enhanced version of the Microsoft Exchange Server SSRF to RCE exploit (ProxyShell/ProxyLogon), another CVSS 10.0 critical vulnerability that…

On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.

DeimosC2 is a Golang command and control framework for post-exploitation.

CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

Automating Host Exploitation with AI

RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.


CVE-2022-39197 漏洞补丁. CVE-2022-39197 Vulnerability Patch.

command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the…

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

CVE-2022-26134 Proof of Concept

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

CVE-2024-3400 Palo Alto OS Command Injection

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina