
CVE-2026-7777-Rust-Use-After-Free-in-Unsafe-Web-Server
Demonstrates a Rust use-after-free in a web server with vulnerable code and a multithreaded trigger to show memory corruption and possible code…

Demonstrates a Rust use-after-free in a web server with vulnerable code and a multithreaded trigger to show memory corruption and possible code…

CryptoLocker is open source files encrypt-er. Crypto is developed in Visual C++. It has features encrypt all file, lock down the system and send keys…

This PoC demonstrates a race condition in the Windows kernel leading to a double-free vulnerability, allowing local privilege escalation to SYSTEM.…

PoC for CVE-2026-6433: WordPress FlipperCode Custom CSS, JS & PHP (≤2.0.7) — unauthenticated SQLi to RCE. Python 3 stdlib; single target or bulk…

Automated scanner for CVE-2026-6271, a critical unauthenticated arbitrary file upload leading to RCE in the WordPress Career Section plugin. Supports…

Multithreaded Python exploit for OpenSSH CVE-2024-6387 RCE vulnerability, leveraging a signal handler race condition to achieve root access on target…

Python scanner that detects Next.js instances vulnerable to CVE-2025-29927, identifies versions, and tests for authentication bypass via the…

Curated list of awesome projects and resources related to Rust and computer security

Multi-threaded Python PoC scanner for CVE-2023-49103 that checks large URL lists for exposed phpinfo() output with .htaccess bypass via /.css path…

Multi-threaded command injection exploit for D-Link Go-RT-AC750 (CVE-2023-48842) that accepts IP:port lists and outputs valid credentials.

Multi-threaded Telnet vulnerability scanner that exploits CVE-2026-24061 via environment variable injection, verifies root access, and provides an…

RscScan: Professional cross-platform vulnerability scanner for Next.js Server Actions (CVE-2025-55182). Detects critical RCE flaws with…

Multi-threaded HTTP/2 request flood tool targeting Apache Tomcat 10.1.10-10.1.39 using malformed priority headers for DoS stability testing. Strictly…

Python-based DDoS tool for educational network stress testing. Supports multi-threaded attacks against IP/URL targets with configurable worker count…

CVE-2026-56290 - Mass Exploit for Joomla Com_pagebuilderck component (Unrestricted File Upload → RCE). Multi-threaded, automatic CSRF bypass, PHP…

Multithreaded Python scanner for CVE-2026-15826 and CVE-2026-15748; checks target lists, supports verbose logging, configurable threads, and custom…

Python-based remote code execution exploit for Apache ActiveMQ deserialization vulnerability (CVE-2023-46604) with multi-threaded scanning and XML…

Python proof-of-concept for CVE-2026-5615, a stored XSS in VvvebJs, demonstrating SVG upload exploitation with multi-threaded scanning and validation.