
byob
An open-source post-exploitation framework for students, researchers and developers.

An open-source post-exploitation framework for students, researchers and developers.

This docx exploit uses res files inside Microsoft .docx file to execute malicious files. This exploit is related to CVE-2021-40444

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…

Generates .docx files exploiting CVE-2021-40444 for Microsoft Office Word Remote Code Execution via malicious bitmap image objects.

Generates malicious .docx files exploiting CVE-2021-40444 (Microsoft Office Word RCE) with embedded HTML and CAB payloads for penetration testing.

Malicious DOCX generator exploiting CVE-2021-40444 for remote code execution via crafted Office documents, with integrated hosting server for payload…

Generates malicious DOCX files exploiting CVE-2021-40444 to achieve remote code execution via crafted Office documents, with an integrated hosting…

Generates malicious DOCX files exploiting CVE-2021-40444 to achieve remote code execution via crafted CAB and HTML payloads, with a built-in hosting…

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office Word RCE) with a built-in HTTP server for payload delivery and…

MS-MSDT Follina CVE-2022-30190 PoC document generator

Proof-of-concept exploit for CVE-2022-30190 (Follina MSDT vulnerability). Generates a malicious Word document that executes a remote script via the…

Proof-of-concept exploit for Microsoft Office security feature bypass (CVE-2026-21509). Generates malicious DOCX files with embedded OLE objects to…

Proof-of-concept exploit for CVE-2022-30190 (Follina). Generates malicious docx files and hosts a server to trigger remote code execution via…

Malicious DOCX generator exploiting CVE-2021-40444 (Microsoft Office Word RCE) with CAB-based DLL side-loading and CAB-less RAR/WSF attack chains for…

Modified CVE-2022-30190 exploit tool for MS-MSDT Office RCE with custom docx template support, binary/command execution modes, and embedded HTTP…

PoC for a Critical stack-based buffer overflow in GNU libextractor ≤ 1.14. A malicious .doc file triggers an unbounded VLA allocation causing…

An exploit implementation for RCE in RTF & DOCs (CVE-2017-0199)

Red Team utilities for setting up CWP CentOS 7 payload & reverse shell (Red Team 9 - CW2023)