
PoC-CVE-2025-29927
→ poc for CVE-2025-29927

→ poc for CVE-2025-29927

Delivering PHP RCE (CVE-2024-4577) to the Local Network Servers

CVE-2025-29927: Next.js Middleware Exploit


Curated repository of vulnerability disclosures from Mandiant, including CVEs discovered through internal research, red team assessments, and wild…

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Automation for internal Windows Penetrationtest / AD-Security

A framework for identifying and launching exploits against internal network hosts. Works via WebRTC IP enumeration combined with WebSockets and…

Offensive security research hub aggregating original vulnerability advisories, CVE proof-of-concept exploits, conference talks, and internal tooling…

Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation…

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

SquirrellyJS mixes pure template data with engine configuration options through the Express render API. By overwriting internal configuration…

DLL-injectable internal game cheat for Plutonium BO2 zombies

Proof-of-concept demonstrating an authorization bypass in Traefik's Kubernetes Gateway provider (CVE-2026-54761) via a crossProviderNamespaces…

Proof-of-concept exploit for CVE-2022-46364, an Apache CXF SSRF vulnerability enabling arbitrary file reads and internal network probing via crafted…

[CVE-2024-26581] Vulnerability Checker for BGN Internal

Use Exposed KongAPI to act like a proxy and get metadata urls or internal urls