
CVE-2020-8165
Python exploit for CVE-2020-8165 targeting Rails MemCacheStore and RedisCacheStore. Enables remote command execution via user-provided object…

Python exploit for CVE-2020-8165 targeting Rails MemCacheStore and RedisCacheStore. Enables remote command execution via user-provided object…

Automated exploit script for CVE-2020-8165 targeting Rails applications, enabling remote code execution via crafted payloads.

Proof-of-concept exploit for CVE-2020-8165 (Ruby on Rails) demonstrating remote code execution via ERB template injection and deserialization. For…

Python exploit shell for CVE-2020-8165, providing a reverse shell payload for remote code execution on vulnerable Rails applications.

A desktop operator console for Sliver C2, built with Wails. Provides a native, lightweight GUI interface for Sliver by directly interfacing with its…

Reproducible lab for CVE-2026-66066: file-read-to-RCE exploit chain via Ruby on Rails Active Storage and libvips HDF5 matload. Includes Python…

Proof-of-concept exploit for CVE-2019-5420, demonstrating remote code execution in Ruby on Rails via ActiveSupport deserialization. Generates signed…

SQL injection exploit for Joomla JCK Editor 6.4.4 (CVE-2018-17254) that dumps admin credentials and optionally uploads a PHP RCE shell via stacked…

Exploit for CVE-2019-12086, a Jackson deserialization vulnerability, using a rogue MySQL server to read arbitrary files from vulnerable applications.

Exploit for CVE-2026-5203 in CMS Made Simple, leveraging path traversal and arbitrary file upload to achieve remote code execution with an…

Proof‑of‑concept exploit for CVE‑2025‑7840 that injects malicious payloads into the Firstname parameter of a reservation form to trigger XSS

Python script that crafts TNEF-encoded Outlook emails with CVE-2023-23397 exploit payloads and sends them via SMTP, enabling NetNTLM credential theft…

Generates malicious RTF files exploiting CVE-2017-11882 to execute arbitrary commands on vulnerable Microsoft Office installations.