
x200-cve-2026-43499
Exploit tool targeting CVE-2026-43499 with automated payload delivery and vulnerability verification for penetration testing engagements.

Exploit tool targeting CVE-2026-43499 with automated payload delivery and vulnerability verification for penetration testing engagements.

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Mogwai Java Management Extensions (JMX) Exploitation Toolkit

Library and generator of PHP unserialize payloads with pre-built gadget chains for frameworks like Laravel, Symfony, Drupal; supports PHAR, encoding,…

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.

Command-line tool to exploit RichFaces JSF endpoints by leveraging known CVEs (CVE-2013-2165, CVE-2015-0279, CVE-2018-12532/12533/14667) with…

Modular payload development kit for shellcode generation, assembly, disassembly, opcode formatting, bad character identification, and execution…

Exploit framework for AD CS CVE-2026-54121 (Certighost) enabling privilege escalation, DC impersonation, and DCSync via certificate forgery. Features…

Multi-vector exploit framework for CVE-2026-60206 targeting Oracle WebLogic Server SAML authentication bypass, with mass scanning, safe detection,…

Exploit framework for Discuz! X5.0 authentication bypass (CVE-2026-49952) enabling unauthenticated database backup access via UC_KEY token reuse.…

Extensible post-exploitation and adversarial emulation framework with multi-protocol C2 listeners, cross-platform agents, and plugin-based…

💥Extension Tool para Auditoría y Explotación avanzada RCE/Source Leak/Dos (CVE-2025-55182/83/84) para entornos Next.js y React Server Components…

iOS exploit tool that silences camera shutter sound on vulnerable devices (iOS 14-16.1.2) using MacDirtyCow vulnerability. Installed via TrollStore…

Extensible exploitation framework with modular payload generation, auxiliary scanners, and post-exploitation agents for penetration testing and…

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

Automated SQL injection testing tool that generates Metasploit auxiliary modules from Burp Suite requests, enabling seamless integration with…

Framework for rapid prototyping of custom command-and-control channels with integration into Cobalt Strike and support for esoteric C2 transports via…

Python-based RAT generator creating undetectable, persistent Meterpreter payloads for Windows/Linux with email notification, password stealing, and…