
CVE-2024-12849-Poc
Exploit for CVE-2024-12849, an arbitrary file read vulnerability in WordPress Error Log Viewer plugin. Downloads sensitive files via unauthenticated…

Exploit for CVE-2024-12849, an arbitrary file read vulnerability in WordPress Error Log Viewer plugin. Downloads sensitive files via unauthenticated…

MAL-014: Authenticated Arbitrary File Read in VMware vCenter Server

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

A collection of AWS penetration testing junk

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

Windows-native penetration testing swiss army knife for lateral movement, credential access, data exfiltration, and vulnerability scanning across…

The SteaLinG is an open-source penetration testing framework designed for social engineering

Exploit scanner for CVE-2025-30208 (Vite arbitrary file read) with multi-variant bypass detection, credential harvesting, SSH key extraction, and…

Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC…

Remote Administration Tool for Android devices

ES File Explorer Open Port Vulnerability - CVE-2019-6447

Android Remote Access Trojan

A Remote Administration Tool for Android devices

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

[Android RAT] Remotely manage your android phone using PHP Interface