
transfer.sh
Easy and fast file sharing from the command-line.

Easy and fast file sharing from the command-line.

An egress firewall for untrusted workloads.

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Source code minh họa máy chủ c2 demo kịch bản thực thi của CVE-2024-23700

Reproducer for CVE-2026-64640 — Apache Polaris Iceberg REST register/register-view vends storage credentials and reads an attacker-chosen metadata…

PoC exploit for CVE-2026-21002 serverless cold-start credential leakage, demonstrating how reused Lambda /tmp directories expose AWS secrets to other…

Controlled defensive analysis of CVE-2025-22442 work-profile provisioning, policy timing, and enterprise isolation.

Walkthrough and PoC of File path traversal vulnerability(CVE-2026-36851) for UnPoller 2.33.0

Reproduction lab for CVE-2026-54316 (Claude Code WebFetch huggingface.co bare-hostname permission bypass / exfiltration)

The code for personally reproducing the corresponding vulnerability

CVE-2021-21220 Exploitation infrastructure

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Technical writeup of CVE-2025-24104: an iOS sandbox escape via symlink validation bypass in backup restoration, enabling arbitrary file reads outside…

Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications

A container image that exfiltrates the underlying container runtime to a remote server

Solitude is a privacy analysis tool that enables anyone to conduct their own privacy investigations. Whether a curious novice or a more advanced…

Twitter Intelligence OSINT project performs tracking and analysis of the Twitter

The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.