
bt2
Blaze Telegram Backdoor Toolkit is a post-exploitation tool that leverages the infrastructure of Telegram as a C&C

Blaze Telegram Backdoor Toolkit is a post-exploitation tool that leverages the infrastructure of Telegram as a C&C

A command-line scanner for batch detection of Next.js application versions and determining if they are affected by CVE-2025-66478 vulnerability.

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.

Proof-of-concept exploit for CVE-2026-62911: pre-auth RCE on Microsoft Exchange via NTLM relay to MRSProxy, writing an ASPX webshell for SYSTEM…

My first Android app: Launch Fusée Gelée payloads from stock Android (CVE-2018-6242)

RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl

基于Java实现的Shellcode加载器

Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.

CVE-2023-34312

Herramienta para evadir disable_functions y open_basedir

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras

Loads and runs ELF objects entirely in memory across x86_64/x86 Linux systems, resolving libc symbols at runtime for stealthy post-exploitation…

PHP CGI Argument Injection (CVE-2024-4577) Remote Code Execution PoC

Windows XP 32-Bit Bootkit

React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)

A cross-platform implant written in Nim

参考Gh0st源码,实现的一款PC远程协助软件,拥有远程Shell、文件管理、桌面管理、消息发送等功能。