


A standalone Blind XSS Script.

Exploit Win10Pcap Driver to enable some Privilege in our process token ( local Privilege escalation )

Migration, Backup, Staging <= 0.9.123 - Unauthenticated Arbitrary File Upload

AI Engine <= 3.1.3 - Unauthenticated Sensitive Information Exposure to Privilege Escalation

GravityForms < 2.9.23.1 - Unauthenticated Arbitrary File Upload

Bot for Telegram on WooCommerce <= 1.2.4 - Authenticated (Subscriber+) Telegram Bot Token Disclosure to Authentication Bypass


Telegram Bot to manage botnets created with struts vulnerability(CVE-2017-5638)

telegram bug that discloses user's hidden phone number (still unpatched) (exploit included)

Proof of Concept (PoC) for CVE-2024-7014 (EvilVideo) Exploit

CVE-2023-26818 Exploit MacOS TCC Bypass W/ Telegram

LiveHelperChat <=4.61 - Stored Cross Site Scripting (XSS) via Telegram Bot Username

CVE-2017-7679 POC SCRIPT BY LORDWARE....

A vehicle network analysis and attack tool.

Proof-of-Concept exploit for CVE-2025-7795 – A buffer overflow vulnerability affecting certain Tenda routers. The exploit sends crafted POST requests…