
CVE-2025-57055
Authenticated RCE exploit for WonderCMS 3.5.0 via malicious theme installation. Includes vulnerability mechanics, PoC, and mitigation guidance for…

Authenticated RCE exploit for WonderCMS 3.5.0 via malicious theme installation. Includes vulnerability mechanics, PoC, and mitigation guidance for…

Automated exploitation framework for CVE-2025-55182 (Next.js RCE) with subdomain enumeration, vulnerability scanning, payload generation, and…

Bypass bludit mitigation login form and upload malicious to call a rev shell

PHP Object Injection exploit for Adminer <4.8.1 via Monolog, causing Denial of Service through crafted serialized payloads. Includes PoC, CVSS…

Python-based exploit for CVE-2024-38063 targeting Windows IPv6 vulnerability. Automates network interface detection, packet crafting, and…

Cybersecurity lab demonstrating exploitation of CVE-2017-0144 (EternalBlue) using Metasploit against a vulnerable Windows 7 VM, achieving…

Educational lab demonstrating EternalBlue (MS17-010) exploitation against Windows 7 using Metasploit, including post-exploitation, WannaCry…

Educational analysis of CVE-2021-44228 (Log4Shell) with PoC scripts, attack vector breakdown, and mitigation guidance for understanding and testing…

Dockerized vulnerable Apache JMeter RMI environment for CVE-2018-1297 deserialization RCE, with ysoserial exploit commands, verification, and…

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…