
ysoserial-cve-2018-2628
Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch

Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch

CVE-2017-7269 to webshell or shellcode loader

A tool to generate media files with malicious metadata

PoC for CVE-2019-19844(https://www.djangoproject.com/weblog/2019/dec/18/security-releases/)

E2E encryption for multi-hop tty sessions or portshells + TCP/UDP port forward

Core A2P2V functionality (command line based)

OWASP Thick Client Application Security Verification Standard

Determine privileges from cloud credentials via brute-force testing.

CVE-2026-32746 - GNU InetUtils telnetd LINEMODE SLC Buffer Overflow PoC (pre-auth RCE, CVSS 9.8)

Git Web Hook Tunnel for C2

Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool

Testing POC for use cases

A coordinated disclosure and security advisory on Fermax Intercom DTML Injection vulneraiblity. Special thanks to Fermax International for prompt…

Proof of concept python script for regreSSHion exploit.


NLA Honeypot Associated Research

CVE-2025-6018 + CVE-2025-6019 Privilege Escalation Exploit

Docker projects to retain beacon source IPs using C2 relaying infra