
CVE-2026-42527
Reproducer for CVE-2026-42527 — Apache Camel permissive default ObjectInputFilter admits java.net.URL, enabling a DNS-based out-of-band side channel

Reproducer for CVE-2026-42527 — Apache Camel permissive default ObjectInputFilter admits java.net.URL, enabling a DNS-based out-of-band side channel

Real-time OSINT intelligence dashboard: 7 live data sources (aircraft, AIS vessels, seismic, fires, weather, GDELT events, news) on an interactive…

Open source Baltic Sea shadow fleet tracker. 1200+ vessels, live AIS, cable proximity alerts. No cloud, no subscription, runs locally

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free

Easy files and payloads delivery over DNS


Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.

Keylogging server and client that uses DNS tunneling/exfiltration to transmit keystrokes through firewalls.

Database Driven DNS Server with a Web UI

DNSChef (NG) - DNS proxy for Penetration Testers and Malware Analysts

A Powershell client for dnscat2, an encrypted DNS command and control tool.

DNS data exfiltrator that sends payloads over UDP/TCP with configurable query size, random delay, and random domains to evade detection during red…

A simple python reverse shell written just for fun.

Data exfiltration and covert communication tool

Zeek Plugin that detects CallStranger (CVE-2020-12695) attempts (http://callstranger.com/)

Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode…

DNS tunneling tool using PowerShell and Nslookup to exfiltrate data and deliver payloads via DNS TXT/MX records, bypassing Constrained Language Mode…