
CVE-2025-33053-POC
POC for CVE-2025-33053 WebDav Exploit, demonstrating how the vulnerability can be triggered in a real environment. This repository focuses on…

POC for CVE-2025-33053 WebDav Exploit, demonstrating how the vulnerability can be triggered in a real environment. This repository focuses on…

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…

OSWE, OSEP, OSED, OSEE

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina

[POC] Asynchronous reverse shell using the HTTP protocol.

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

Payload Generation Framework

CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability

Kerberos CNAME abuse PoC

There are many cheat sheets out there, but this is mine.

HTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root

From deobfuscating code.js to root, CVE-2023-0386


Gogs Symlink Traversal → RCE