
Octopus
Open source pre-operation C2 server based on python and powershell

Open source pre-operation C2 server based on python and powershell

Source code for SubSeven 2.1.3

Full exploit chain lab and Suricata IDS detection for CVE-2022-30190 (Follina) - MSDT RCE

Python Remote Administration Tool (RAT) to gain meterpreter session

POC to replicate the full 'Follina' Office RCE vulnerability for testing purposes

A critical RCE vulnerability in Windows TCP/IP stack (CVE-2025-26686) leaves sensitive memory unlocked, allowing remote attackers to hijack systems.…

PoC for a Critical stack-based buffer overflow in GNU libextractor ≤ 1.14. A malicious .doc file triggers an unbounded VLA allocation causing…

Proof-of-concept exploit for CVE-2024-37054, a critical deserialization vulnerability in MLflow. Includes a full exploit script and a malicious model…

React2Shell vulnerability (CVE-2025-55182 / CVE-2025-66478) Full Script

full javascript reproduction of CVE-2026-63030 (author_exclude, author__not_in and misalignment between validations and matches)

The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to…

The Joomla extension Balbooa Forms is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full…

A Fullstack Academy Cybersecurity project examining the full cycle of the Follina (CVE-2022-30190) vulnerability, from exploit to detection and…

Cybersecurity lab demonstrating exploitation of CVE-2017-0144 (EternalBlue) using Metasploit against a vulnerable Windows 7 VM, achieving…

Educational lab demonstrating a stack buffer overflow (CVE-2025-5548) in FreeFloat FTP Server. Covers full exploit development: vulnerability…

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

✉️ HTML Smuggling generator&obfuscator for your Red Team operations
