
CVE-2026-62911
Proof-of-concept exploit for CVE-2026-62911: pre-auth RCE on Microsoft Exchange via NTLM relay to MRSProxy, writing an ASPX webshell for SYSTEM…

Proof-of-concept exploit for CVE-2026-62911: pre-auth RCE on Microsoft Exchange via NTLM relay to MRSProxy, writing an ASPX webshell for SYSTEM…

Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit

Local privilege escalation exploit for CVE-2023-36802 targeting Windows kernel streaming service (MSKSSRV) on Windows 11 22H2, using I/O Ring…

Execute a payload at each right click on a file/folder in the explorer menu for persistence

Async BOF to automatically extract or renew Kerberos TGTs on a target system.

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

Exploit for CVE-2021-4034 (PwnKit) that leverages a race condition in pkexec to escalate privileges to root on Linux systems.

Multithreaded Python exploit for OpenSSH CVE-2024-6387 RCE vulnerability, leveraging a signal handler race condition to achieve root access on target…

A sandbox escape based on the proof-of-concept (CVE-2018-4087) by Rani Idan (Zimperium)

it works on xp (all version sp2 sp3)

Injects x64 managed DLLs into GUI processes via SetWindowsHook, with a modular C# payload runner and LSASS dump POC for red-team/offensive Windows…

CVE-2024-6387 (regreSSHion) Exploit (PoC), a vulnerability in OpenSSH's server (sshd) on glibc-based Linux systems.

IngressNightmare POC. world first non-blind remote execution exploitation with multi-advanced exploitation methods. allow on disk exploitation.…