
PyStegosploit
PoC - Exploit Delivery via Steganography and Polyglots, CVE-2014-0282

PoC - Exploit Delivery via Steganography and Polyglots, CVE-2014-0282

My proof of concept for CVE-2019 Microsoft-Edge

Proof of concept for CVE-2022-1364 against Alibaba's UC Browser

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This…

Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

Proof-of-concept exploit for CVE-2023-41993, a WebKit vulnerability in iOS 17.0 and macOS 14.0, demonstrating addrof/fakeobj primitives for browser…

Proof-of-concept exploit for CVE-2026-54088, a pre-authentication OS command injection in File Browser <=2.63.5. Demonstrates shell injection via…

A tool to transform Chromium browsers into a C2 Implant

Proof-of-concept exploit for CVE-2025-14174, a use-after-free in Chrome's V8 engine. Includes JavaScript PoC and HTML embed for identifying the…

Delivering PHP RCE (CVE-2024-4577) to the Local Network Servers

A personal collection of Windows CVE I have turned in to exploit source, as well as a collection of payloads I've written to be used in conjunction…

The Browser Exploitation Framework Project

Proof-of-concept exploit for CVE-2019-13720, a Chrome browser vulnerability. Includes a demonstration video and a released exploitation tool for…

Browser-based CVE-2021-21220 exploit delivering a reverse shell via shellcode and a C2 implant for remote command execution on Windows targets.

Full exploit chain (CVE-2019-11708 & CVE-2019-9810) against Firefox on Windows 64-bit.