
voidsyscall
Cross-platform syscall-powered implant & C2 — direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No winapi layer.

Cross-platform syscall-powered implant & C2 — direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No winapi layer.

Struts2 S2-045/S2-046 CVE-2017-5638 detection & exploitation tool

Exploit PoC for CVE-2026-41940, a cPanel & WHM authentication bypass via CRLF injection. Includes mass scanning, post-exploitation actions, and an…

Proof-of-concept exploit for CVE-2026-23744, targeting /api/mcp/connect to achieve remote command execution on Linux systems via reverse shell.

REC2 (Rusty External Command and Control) is client and server tool allowing auditor to execute command from VirusTotal and Mastodon APIs written in…

A powerful shell script for creating custom WSL (Windows Subsystem for Linux) distributions with embedded payloads.

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

This CVE addresses a vulnerability in sudo versions 1.9.14 to 1.9.17, enabling unauthorized local privilege escalation to root access.

Jasmin Ransomware is an advanced red team tool (WannaCry Clone) used for simulating real ransomware attacks. Jasmin helps security researchers to…

encrypted-linux-kernel-modules

AdaptixC2 is a highly modular advanced redteam toolkit

Extending of metasploit-framework

:mouse: This is a cross-platform Python 2.x Remote Access Trojan (RAT)

Herramienta para evadir disable_functions y open_basedir

RCE for WingFTP v4.7.3

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

Exploit for CVE-2024-21980 targeting AMD SEV firmware to decrypt arbitrary memory of decommissioned SEV-SNP guests via a command buffer enforcement…

CVE-2024-6387 POC (Currently being edited)