


AV evading cross platform Backdoor and Crypter Framework with a integrated lightweight webUI


Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Perform advanced MiTM attacks on websites with ease 💉

A .NET XOR encrypted cobalt strike aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities.

XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.

Advanced WinRAR Path Traversal Exploit Tool for CVE-2025-8088

Phantom Keylogger is an advanced, stealth-enabled keystroke and visual intelligence gathering system.

Advanced Exploitation Toolkit for Next.js Server Actions (CVE-2025-55182)

The Advanced Custom Fields: Extended plugin for WordPress is vulnerable to Remote Code Execution in versions 0.9.0.5 through 0.9.1.1 via the…

Advanced security testing tool for CVE-2025-55182 vulnerability assessment in Next.js applications. Features interactive shell, batch scanning, WAF…

A PoC for CVE-2023-46604 written as part of SPS class for the Advanced Cyber Security master's at UPB.

EDSEC_BKIF is a keystroke injection tool for Android, Linux, and iOS. With the help of CVE-2023-45866, it grants users unprecedented control over…

An advanced command-line framework for discovery, validation, and exploitation of CVE-2025-55182 and CVE-2025-66478 affecting Next.js applications…

User Registration Advanced Fields <= 1.6.20 - Unauthenticated Arbitrary File Upload

Advanced Custom Fields Extended (ACFE) WordPress Plugin Exploit RCE - Admin Creation

Exploit for CVE-2009-4623: remote file inclusion in Advanced Comment System 1.0 enabling arbitrary PHP code execution and reverse shell via ACS_path…