
CVE-2020-11978
PoC of how to exploit a RCE vulnerability of the example DAGs in Apache Airflow <1.10.11

PoC of how to exploit a RCE vulnerability of the example DAGs in Apache Airflow <1.10.11

How to spoof the command line when spawning a new process from C#.

Script is a proof of concept how to control your machine by using social media sites.

A proof of concept demonstrating how to use the Hinge dating app as a C2.

Presents how to exploit CVE-2021-44228 vulnerability.

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free

Python exploit script for CVE-2026-23744 that delivers a reverse shell to a specified target URL, requiring a netcat listener for command-and-control.

Offensive tool for exploiting management applications (SolarWinds Orion, McAfee ePO) via non-technical vulnerabilities. Enables client enumeration,…

Exploit created by: R4v3nBl4ck end Pacman

Proof of Concept of apache log4j LDAP lookup vulnerability. CVE-2021-44228

CVE-2025-57174 Unauthenticated Remote Command Execution

Python exploit for CVE-2014-6271 (ShellShock) enabling remote code execution via crafted environment variables in GNU Bash, targeting web servers and…

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

A POC C2 server and agent to explore just if/how the Ethereum blockchain can be used for C2

Lightweight telnet honeypot for capturing IoT malware samples and identifying active command-and-control infrastructure, designed for educational…

This is a concept poc of command and control server implemented over blockchain

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)