
ClearML-CVE-2024-24590
Proof of concept for CVE-2024-24590

Proof of concept for CVE-2024-24590

Python exploit for CVE-2014-6271 (ShellShock) enabling remote code execution via crafted environment variables in GNU Bash, targeting web servers and…

Proof of Concept of apache log4j LDAP lookup vulnerability. CVE-2021-44228

Primefaces <= 5.2.21, 5.3.8 or 6.0 - Remote Code Execution Exploit

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Python Remote Administration Tool (RAT)

exp for https://research.checkpoint.com/extracting-code-execution-from-winrar

Offensive tool for exploiting management applications (SolarWinds Orion, McAfee ePO) via non-technical vulnerabilities. Enables client enumeration,…

Python PoC script exploiting an arbitrary file upload vulnerability in Best House Rental Management System 1.0 to upload a PHP web shell and execute…

A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, Cybench,…

[NEW] : Mega Bot ☣ Scanner & Auto Exploiter

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

Proof-of-concept for CVE-2026-25940 demonstrating embedded JavaScript execution via crafted AcroForm radio button appearances in PDF viewers, with…

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

Python library for Turbo Intruder that adds payload position support and Sniper/Clusterbomb/Pitchfork attack types with tag-based test generation for…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

react2shell CVE-2025-55182 PoC