
KindaRails2Shell
Single-file PoC for Rails CVE-2026-66066: arbitrary file read, secret recovery, threaded scanning, and conditional RCE via signed image variations.

Single-file PoC for Rails CVE-2026-66066: arbitrary file read, secret recovery, threaded scanning, and conditional RCE via signed image variations.

Proof-of-concept exploit for CVE-2024-5082, a remote code execution vulnerability in Sonatype Nexus Repository Manager 2 via crafted Maven artifacts…

PHP 8.1.0-dev User-Agentt Backdoor Remote Code Execution (RCE)

PoC for CVE-2026-7669: SGLang silent trust_remote_code override -> RCE

A tool for generating reverse shell payloads on the fly.

Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading a C# port of…

CVE-2025-53547 one of poc code

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

Rust Weaponization for Red Team Engagements.

Demonstration exploit for CVE-2022-32223: DLL hijacking in Node.js on Windows via malicious providers.dll, targeting OpenSSL installations.

Statically linked implementation of the CVE-2021-4034 privilege escalation exploit, with encoded payload written to disk and no gcc dependency.

CVE-2019-3980 exploit written in win32/c++ (openssl dependency). Port of https://github.com/tenable/poc/blob/master/Solarwinds/Dameware/dwrcs_dwDrvIns…

Exploit for remote command execution in Golang go get command.