
discover
Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Adversary Emulation Framework

Proof of Concept (PoC) of CVE-2025-69212 related with P7M File Processing

Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

PoC for jenkins 2.63 CVE-2019-1003030


ZIP Bomb Creator is a tool used to create a ZIP file that is small in size but drastically expands when extracted.


This is a special panel that is used to send POC requests with the output of responses.

Polymorphic encryptor that transforms shellcode, PE, and COFF files into obfuscated, position-independent payloads with RC4 and random block cipher…

Two POCs I created for the CVE-2023-23397 Outlook NTLM vulnerability, to be used internally.

WooCommerce Designer Pro 1.9.26 - Arbitrary File Upload

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

MailPoet Newsletters <= Arbitrary File Upload (exploiter)

Exploitation report of the Samba Trans2Open vulnerability (CVE-2003-0201), including tools used, exploitation steps, and protection techniques to…

Wordpress Plugin AI Engine 2.9.3 - 2.9.4 Proof Of Concept

POC for PDF JS' CVE-2024-4367 vuln