

An autonomous reflective Go agent for full-cycle security auditing, WAF evasion, OOB LDAP verification, self-remediation (auto-patching), and…

CVE-2026-38526 exploit for Krayin CRM v2.2.x - Authenticated RCE via TinyMCE file upload bypass. Features interactive shell, multi-type payloads,…

CVE-2021-21425 - GravCMS 1.10.7 Unauthenticated RCE via Scheduler. Improved exploit with CLI args and auto base64 encoding.

CVE-2023-4220 — Unauthenticated file upload RCE in Chamilo LMS ≤ 1.11.24. OSCP-style and auto exploit.

CVE-2025-55182 Auto Scanner - Improved Version For authorized CTF/testing purposes only

Android client for Adaptix C2 framework enabling remote agent management, interactive command shells, listener control, payload generation, and…


Auto exploitation tool for CVE-2024-24401


Fully automated Spring4Shell (CVE-2022-22965) + GitLab RCE framework

WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover

exploit auto

SEO LAT Auto Post <= 2.2.1 - Missing Authorization to File Overwrite/Upload (Remote Code Execution)

SEO LAT Auto Post <= 2.2.1 - Missing Authorization to File Overwrite/Upload (Remote Code Execution)

CVE-2023-29384 Auto Exploiter on WordPress Job Board and Recruitment Plugin

Auto discover and exploit LAN raspberry pi's