
donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro analysis…

Dump the memory of a PPL with a userland exploit

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

Amsi Bypass payload that works on Windwos 11

IDPS & SandBox & AntiVirus STEALTH KILLER. MorphAES is the world's first polymorphic shellcode engine, with metamorphic properties and capability to…

Windows x64 kernel mode rootkit process hollowing POC.

Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE

BOF combination of KillDefender and Backstab

LPE exploit for CVE-2023-36802

Safari 1day RCE Exploit

[漏洞复现] 全球首款利用PHP默认环境(XAMPP)的CVE-2024-4577 PHP-CGI RCE 漏洞 EXP。

Arduino Rubber Ducky Framework

it works on xp (all version sp2 sp3)

CVE-2021-40444


A PoC exploit for CVE-2024-25600 - WordPress Bricks Builder Remote Code Execution (RCE)