
redshell
An interactive command prompt for red teaming and pentesting. Automatically pushes commands through SOCKS4/5 proxies via proxychains. Optional Cobalt…

An interactive command prompt for red teaming and pentesting. Automatically pushes commands through SOCKS4/5 proxies via proxychains. Optional Cobalt…

Proof-of-concept exploit for CVE-2024-3400, a Palo Alto OS command injection in GlobalProtect VPN. Demonstrates file creation and outbound command…

DarkAgent Remote Administration Tool RAT by DragonHunter


Proof-of-concept exploit for CVE-2020-11651 achieving pre-authentication remote code execution on SaltStack master and minions via salt.cmd runner.

Exploit for CVE-2023-27532 against Veeam Backup & Replication

CVE-2022-39197 漏洞补丁. CVE-2022-39197 Vulnerability Patch.

Post Exploitation agent which uses a browser to do C2 operations.

Scanner and exploit for CVE-2024-12986, a command injection in DrayTek Gateway Devices. Includes a Bash scanner and a Python interactive shell for…

External C2 Using IE COM Objects

Shell Simulation over Net-SNMP with extend functionality

A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.

[PoC] Command injection via PDF import in Markdown Preview Enhanced (VSCode, Atom)

Chalumeau is automated,extendable and customizable credential dumping tool based on powershell and python.

Exploit and check script for CVE-2022-1388, targeting F5 BIG-IP management interface to execute commands and verify vulnerability.

An interactive shell to spoof some LOLBins command line

CVE-2024-4577 is a critical vulnerability in PHP affecting CGI configurations, allowing attackers to execute arbitrary commands via crafted URL…

CVE-2024-41570: Havoc C2 0.7 Teamserver SSRF exploit