
CVE-2025-50754-PoC
Stored XSS in a CMS platform leads to remote code execution (CVE-2025-50754)

Stored XSS in a CMS platform leads to remote code execution (CVE-2025-50754)

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Nuclei templates and exploit resources for CRLF based desync attacks

Modified .NET deserialization payload for CVE-2021-42321, based on ysoserial.net, that writes files and bypasses Windows Defender to target Microsoft…

POC for CVE-2017-10271. Since java.lang.ProcessBuilder was the original vector for RCE, there are multiple signature based rules that block this…

Reverse Engineered based on CISA disclosure of new CVE

This room is based on exploiting the notorious Log4j vulnerability ( CVE-2021-44228), also referred to as the Log4Shell. The weakness enables…

This exploit is based on CVE-2023-26360 (https://nvd.nist.gov/vuln/detail/CVE-2023-26360) and was built on top of the Metasploit module and the…

This exploit is based on CVE-2023-6553 and was built upon the original exploit by Chocapik, it was added that a direct reverse shell can be obtained.

Full-chain reproduction of CVE-2022-36804 (Bitbucket RCE). Includes a Dockerized laboratory, pspy64 monitoring for null-byte injection verification,…

XLL Phishing Tradecraft

ImaegMagick Code Execution (CVE-2016-3714)


poc for cve-2025-53772

CVE-2020-4464 / CVE-2020-4450

Decrypt and re-encrypt Laravel session cookies to exploit insecure PHP deserialization for remote code execution.

JavaScript-based exploit for Adobe Reader CVE-2014-0521 with proof-of-concept PDFs demonstrating file reading and data exfiltration via WebDAV.

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…