
twittor
A fully featured backdoor that uses Twitter as a C&C server

A fully featured backdoor that uses Twitter as a C&C server

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

An Attempt to Port BlueKeep PoC from @Ekultek to actual exploits

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

This is a proof-of-concept demonstration for CVE-2025-62726, created for educational purposes as part of a class project. Part of CMU Course : 18-739…

Cobalt Strike Malleable C2 Design and Reference Guide


A PoC backdoor that uses Gmail as a C&C server

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Test & Analyze the CVE-2025-55182 vulnerability within Next.js Server Actions

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

Forth-based compiler deployed as position-independent x86_64 shellcode, providing a remote code execution agent with interactive REPL over TCP, HTTP,…

A demo Android project showcasing dynamic DEX loading using DexClassLoader, PathClassLoader, and in-memory execution. For educational purposes only.

Windows User-Mode Shellcode Development Framework (WUMSDF)


Reproducer for CVE-2026-33453: Apache Camel camel-coap header injection to RCE via camel-exec

Reproducer for CVE-2026-27172: Apache Camel camel-consul ConsulRegistry Java deserialization (RCE)