
gitpwnd
GitPwnd is a network penetration tool that lets you use a git repo for command and control of compromised machines

GitPwnd is a network penetration tool that lets you use a git repo for command and control of compromised machines

Proof-of-concept exploit for CVE-2017-1000117, a Git remote code execution vulnerability that executes ifconfig on successful exploitation.

Exploit for CVE-2024-32002, a Git RCE vulnerability that uses recursive submodule cloning and symlinks to execute arbitrary commands on Windows and…

Git Web Hook Tunnel for C2

PoC exploit for CVE-2018-11235 allowing RCE on git clone --recurse-submodules

Proof-of-concept exploit for CVE-2017-1000117: remote code execution via malicious git submodule SSH URL, enabling reverse shell payload delivery…

Reverse Shell for CVE-2022-1388

Proof-of-concept exploit for CVE-2025-8110, a command injection vulnerability in Gogs Git hook mechanism enabling remote code execution on…

Proof-of-concept exploit for CVE-2017-1000117, demonstrating remote code execution via malicious Git submodule URLs using SSH ProxyCommand injection.

Proof-of-concept exploit for CVE-2021-21300, demonstrating remote code execution via malicious git repository cloning with symlink and filter abuse…

Sandbox for AI coding agents. Runs Copilot CLI, Claude Code, OpenCode, Gemini CLI, Antigravity, Pi, goose or a plain shell inside a kernel-level…

Proof-of-concept exploit for CVE-2020-27955 in Git-LFS, demonstrating remote code execution via a crafted git clone operation to obtain a reverse…

Detects CVE-2026-45321 (TanStack supply chain compromise) and Mini Shai-Hulud worm artifacts. Scans node_modules, lockfiles, persistence hooks…

Educational CTF demo demonstrating command execution via Git hooks by abusing core.hooksPath in automation workflows. Highlights local hook execution…

Proof-of-concept demonstrating CVE-2024-32002 remote code execution via malicious Git submodule hook, targeting Windows and macOS systems.

GOGS RCE cve-2025-8110 python script that automates the whole attack chain of creating a repository with a symlink file pointing to .git/config and…

exploit CVE-2021-44228

CVE-2025-46811