
RCE-CVE-2020-5902
Exploit for CVE-2020-5902 enabling remote code execution on unpatched F5 BIG-IP devices via path traversal and command injection in the TMUI…

Exploit for CVE-2020-5902 enabling remote code execution on unpatched F5 BIG-IP devices via path traversal and command injection in the TMUI…

Use Android as Rubber Ducky against another Android device

Root your MediaTek device with CVE-2020-0069

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

Automated exploitation of CVE-2024-0044 for Android devices. Installs malicious APKs, extracts UIDs, and generates payloads via ADB for penetration…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

AndroRAT is a capability that can be used to inject a root exploit as a silent installation to perform a malicious task on the device. This AndroRAT…

Python proof-of-concept exploit for CVE-2023-3722, an unrestricted file upload vulnerability in Avaya Aura Device Services enabling remote code…

Electron-based Android RAT with server-side control panel and client-side backdoor APK generator for remote device administration and penetration…

Embedded keystroke injection device exploiting wireless mouse/keyboard vulnerabilities via NRF24L01+ radio, with Duckyscript-based payload generation…

Bluetooth keyboard injection exploit for CVE-2023-45866 targeting Android, iOS, macOS, and Linux devices. Simulates HID device to execute automated…

An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.

Bash script for Android device penetration testing via ADB, featuring 28 options and a Metasploit section for payload generation, remote control, and…

Simple Windows and Linux keystroke injection tool that exfiltrates stored WiFi data (SSID and password).

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

Proof-of-concept exploit for CVE-2022-47966, a pre-authentication remote code execution vulnerability in multiple ManageEngine products via SAML…

Embedded keystroke injection tool using NRF24L01 radio to exploit Mousejack vulnerabilities in wireless mice and keyboards, with Duckyscript payload…

🐾Dogwalk PoC (using diagcab file to obtain RCE on windows)