
lure
Local Linux binary analysis tool. Zero cloud. Zero root. See exactly what a binary does before you run it.

Local Linux binary analysis tool. Zero cloud. Zero root. See exactly what a binary does before you run it.

:triangular_flag_on_post: A CLI tool & library to enhance and speed up script/exploit writing with string conversion/manipulation.

wp2shell — WordPress Core Pre-Auth RCE Chain poc for CVE-2026-63030 and CVE-2026-60137

RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data


CVE-2026-39987 for marimo 0.20.4 PoC

Automates setup of binary exploitation challenges by patching ELF binaries, fetching matching linkers, unstripping libc, and generating pwntools…

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool

Gogs service Exploit and get the root user

# CVE-2025-27591 PoC — Below Local Privilege Escalation This repository contains a Proof of Concept (PoC) demonstrating the local privilege…

NØW is a word-based shellcode encoding and obfuscation tool that transforms raw shellcode bytes into natural-looking English prose.

Search for ROP gadgets in ELF, PE, Mach-O, and Raw binaries across x86, ARM, MIPS, and RISC-V architectures. Supports automated ROP chain generation…

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an…

Time-Based Blind SQL Injection tool for MySQL - CVE-2019-9053

Reproduction lab for CVE-2026-54316 (Claude Code WebFetch huggingface.co bare-hostname permission bypass / exfiltration)

WEB-CLI_RCE_React2Shell is an educational PoC exploit tool for CVE-2025-55182, a critical Prototype Pollution flaw in Next.js applications using…