
hp-slate7-root-kit
HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

🛡️ CVE-2026-64638 - WordPress Security Assessment Suite (CVSS 8.9) | WordPress 4.7.0-7.0.2 pentest toolkit. Includes vulnerability assessment &…

CompMgmtLauncher & Sharepoint DLL Search Order hijacking UAC/persist via OneDrive


cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…


This repo documents a vulnerability in Siri Shortcuts and Shared Web Credentials (SWC) allowing malformed payloads to persistently execute, trigger…

iOS Bluetooth PAN vulnerability that opens USB port 62078 and displays Ethernet icon without any adapter (€0). Apple sells a €89.95 adapter for the…

Exploit systems using older WinRAR without knowing their username (unlike other projects)


Proof-of-Concept for CVE-2025-8088 vulnerability in WinRAR (path traversal via ADS)

CVE-2018-19537

Panoramic Dental Imaging software Stealthy Privilege Escalation Vulnerability

Comprehensive Penetration Testing report and exploit chain for Metasploitable 2 focusing on CVE-2011-2523.

WinRAR < 7.13 path traversal for persistency