
CVE-2019-11043
php-fpm+Nginx RCE

php-fpm+Nginx RCE

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Android remote administration tool

A PoC of CVE-2025-24071 / CVE-2025-24054, A windows vulnerability that allow get NTMLv2 hashes

Get Keyboard,Mouse,ScreenShot,Microphone Inputs from Target Computer and Send to your Mail.

PoC payload generator for CVE-2022-44268 ImageMagick arbitrary file read vulnerability. Demonstrates exploitation via crafted PNG files for…

Polymorphic C2 framework with graphical interface, automatic reconnection, payload generation, and integrated hacking tools for red team operations…

Public PoC for CVE-2025-25257: FortiWeb pre-auth SQLi to RCE

Tools for investigating Log4j CVE-2021-44228

### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class…

Double-Free BUG in WhatsApp exploit poc.

CLI wrapper for MSFvenom that streamlines payload creation with profile management, automated listener generation, and organized output for…

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Dynamically extracts fresh syscall stubs from ntdll.dll to evade signature-based detection, with a shellcode execution template for Nim-based…

Mousejack for Arduino UNO

Python proof-of-concept for CVE-2021-44228 (Log4Shell) that automates exploitation via a crafted Java payload, with argparse options for customizable…