
CVE-2026-31431-Linux-Copy-Fail
Exploit CVE-2026-31431 on Linux using a Rust implementation to achieve local privilege escalation via an arbitrary page cache write primitive.

Exploit CVE-2026-31431 on Linux using a Rust implementation to achieve local privilege escalation via an arbitrary page cache write primitive.

During the exploitation phase of a pen test or ethical hacking engagement, you will ultimately need to try to cause code to run on target system…

Obfuscates PowerShell and JavaScript scripts using tree-sitter-based parsing with multiple configurable impostor profiles for stealth, size, and…

CVE-2020-13671 - Drupal RCE via File Upload Vulnerability Analysis and PoC

Crystal Palace PICO loader for Sliver C2 dual-layer AMSI bypass, ETW silencing, AES-256-CBC encrypted payloads, 6 delivery variants

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

Palo Alto - CVE-2026-0300 exploit

Direct Memory Access (DMA) Attack Software

Reproduction of cve-2024-1708-connectwise_rce_reproduction

Post-exploitation and evasion research toolkit for Linux.

A proof of concept for CVE-2022-30190 (Follina).

A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

PHP 8.1.0-dev User-Agentt Backdoor Remote Code Execution (RCE)

Unauthenticated SQL Injection to Remote Code Execution in FreePBX — CVE-2025-57819

Proof-of-concept exploit for CVE-2026-33017 demonstrating unauthenticated remote code execution in Langflow via malicious CustomComponent injection…

Generates obfuscated .lnk files exploiting CVE-2026-21510 with LNK stomping, encrypted payloads, and anti-forensics for authorized penetration…

Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)