
BEAR-C2
The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Exploit for CVE-2026-18080, an unauthenticated arbitrary file upload leading to RCE in ERP Complete HR, Accounting & CRM Suite. Includes Python and…

Authenticated RCE exploit for SuiteCRM <= 8.0.1 via email template image upload, planting a PHP webshell for remote command execution.

CVE-2021-42287/CVE-2021-42278 exploits in powershell

C# Reflective loader for unmanaged binaries.

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

Lateral Movement Using DCOM and DLL Hijacking

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Local & remote Windows DLL Proxying

xll windows reverse shell

CVE-2026-28289

A fully featured Windows backdoor that uses email as a C&C server

C&C Botnet written in Python with fabric

Ping Exfiltration Command and Control (PiX-C2)

CVE-2023-22621: SSTI to RCE by Exploiting Email Templates affecting Strapi Versions <=4.5.5

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

Proof-of-concept exploit for CVE-2024-21413, a Microsoft Outlook remote code execution vulnerability. Demonstrates NTLM credential leakage and RCE…