
SMBRat
A Windows Remote Administration Tool in Visual Basic with UNC paths

A Windows Remote Administration Tool in Visual Basic with UNC paths

A critical RCE vulnerability in Windows TCP/IP stack (CVE-2025-26686) leaves sensitive memory unlocked, allowing remote attackers to hijack systems.…

🔥 React2Shell Toolkit - CVE-2025-55182 & CVE-2025-66478

simple c2 written in python to demonstrate security concepts

Proof-of-concept for CVE-2025-2304 — critical (CVSS 9.4) mass-assignment privilege escalation in Camaleon CMS.

A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

PoC exploit for CVE-2026-3844, a critical unauthenticated file upload vulnerability in the WordPress Breeze plugin leading to RCE.

OpenSTAManager RCE Exploit (CVE-2026-38751)

WordPress ThemeEgg ToolKit plugin <= 1.2.9 - Arbitrary File Upload vulnerability

An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file (DLL Hijacking)

A simple python reverse shell written just for fun.

HoneyPoC 2.0: Proof-of-Concept (PoC) script to exploit IPv6 (CVE-2020-16898).

Auto discover and exploit LAN raspberry pi's

Python exploit for MS09-050 (CVE-2009-3103) SMBv2 srv2.sys buffer overflow, with vulnerability scanner, arch auto-detection, and x86/x64 reverse…

Generates detection artifacts for CVE-2026-21902 on Juniper Junos Evolved, enabling verification of unauthenticated remote code execution via command…

CVE-2026-64638: WordPress Pre-auth XSS → RCE (XSS2Shell) PoC

Passive security checker for CVE-2026-48908 affecting SP Page Builder.