
rosemary
Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

Generate Caddy redirector configs from Cobalt Strike or Sliver C2 profiles.

GOGS RCE cve-2025-8110 python script that automates the whole attack chain of creating a repository with a symlink file pointing to .git/config and…

Python PoC for CVE-2025-60787, authenticated OS command injection RCE in motionEye <= 0.43.1b4 via unsanitized image_file_name config

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

Combined PoCs for rConfig: SQL Injection (CVE-2020-10220) & Command Injection (CVE-2020-10879)

CVE-2024-51442 write up and example config file

CVE-2023-51385

Config extractor for AgentTesla - Discord/Telegram Variant

Python parser for extracting CobaltStrike Beacon configurations from PE files, memory dumps, and C2 URLs using heuristic XOR decryption and…

Convert Cobalt Strike profiles to modrewrite scripts

Proof-of-concept exploit for CVE-2021-21300, demonstrating remote code execution via malicious git repository cloning with symlink and filter abuse…

app turn nil publics and privates into blanks 3 months ago config Use bundler/setup for more graceful bundler related failures 11 days ago data…

New Found 0-days!

Telegram Bot to manage botnets created with struts vulnerability(CVE-2017-5638)