
Schwarze-Sonne-RAT
SS-RAT (Schwarze-Sonne-Remote-Access-Trojan)

SS-RAT (Schwarze-Sonne-Remote-Access-Trojan)

CVE-2020-0022 vulnerability exploitation on Bouygues BBox Miami (Android TV 8.0 - ARM32 Cortex A9)

Exploit for VMWare Workspace ONE Access chaining five CVEs for unauthenticated remote code execution via JDBC injection and privilege escalation.

CVE-2020-17103 adapted for C2 with split-binary SYSTEM callback


PoC for CVE-2026-58635: Windows Narrator Braille Local Privilege Escalation

Proof-of-concept exploit for CVE-2025-29824, a use-after-free vulnerability in the Windows CLFS kernel driver, demonstrating privilege escalation to…

CVE-2026-60004 Pre-Auth RCE Exploit — Gitea <= 1.27.0 diffpatch git hook injection (CVSS 9.8)

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, bypassing LockDown mode protection by exploiting ImageIO (CVE-2025-43300), then…

Go-based scanner that detects SharePoint CVE-2025-53770 RCE vulnerability by injecting a harmless marker into the ToolBox widget and verifying its…


PoC code for CVE-2017-13253

Rust-based User-Defined Reflective Loader for Cobalt Strike payloads. Avoids RWX memory pages for OPSEC safety. Includes an extractor tool for loader…

WORK IN PROGRESS. RAT written in C++ using Win32 API

👻 CVE-2026-54121 - Best CertiGhost AD CS Multi-Exploit Framework | Advanced toolkit with rogue DC/LDAP servers, certificate abuse, PKINIT hash…

Example PoC Code for CVE-2017-5638 | Apache Struts Exploit

nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others)

A fully featured Windows backdoor that uses email as a C&C server