
metasploit-framework
app turn nil publics and privates into blanks 3 months ago config Use bundler/setup for more graceful bundler related failures 11 days ago data…

app turn nil publics and privates into blanks 3 months ago config Use bundler/setup for more graceful bundler related failures 11 days ago data…

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

Convert Cobalt Strike profiles to modrewrite scripts

Python parser for extracting CobaltStrike Beacon configurations from PE files, memory dumps, and C2 URLs using heuristic XOR decryption and…

Generate Caddy redirector configs from Cobalt Strike or Sliver C2 profiles.

Proof-of-concept exploit for CVE-2021-21300, demonstrating remote code execution via malicious git repository cloning with symlink and filter abuse…

New Found 0-days!

Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

CVE-2024-51442 write up and example config file

Python PoC for CVE-2025-60787, authenticated OS command injection RCE in motionEye <= 0.43.1b4 via unsanitized image_file_name config

Combined PoCs for rConfig: SQL Injection (CVE-2020-10220) & Command Injection (CVE-2020-10879)

Telegram Bot to manage botnets created with struts vulnerability(CVE-2017-5638)

Config extractor for AgentTesla - Discord/Telegram Variant

CVE-2023-51385

GOGS RCE cve-2025-8110 python script that automates the whole attack chain of creating a repository with a symlink file pointing to .git/config and…