
CVE-2025-5781
Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

Exploit for Apache Kyuubi path traversal (CVE-2026-52680) achieving unauthenticated arbitrary file write and code execution via profile.d shell…

Realistic APT adversary simulation campaigns with custom C2 frameworks, backdoors, stagers, and bootloaders mirroring state-sponsored TTPs for red…

Rust-based DLL hijacking loader for MobaXterm (CVE-2026-6421) with persistence

Python exploit for CVE-2025-57819 targeting FreePBX via unauthenticated SQL injection to achieve remote code execution with automatic reverse shell…

Generate and build Windows proxy DLLs in Rust with prehook, posthook, and fullhook macros; supports DLL search-order hijacking for red-team or…

Exploit for a Windows Defender race condition that escalates to SYSTEM via use-after-free, crashes MsMpEng.exe, spawns a hidden shell, and persists…

Multi-CVE exploit tool for pre-auth remote code execution on Ivanti Sentry and FortiSandbox. Features interactive shell, webshell deployment,…

WinRAR < 7.13 path traversal for persistency

A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs

Herramienta avanzada de explotación transversal de ruta de WinRAR para CVE-2025-8088

Tools for maintaining access to systems and proof-of-concept demonstrations.

Code Execution & Persistence in NETWORK SERVICE FAX Service

Proof-of-concept framework for CVE-2025-24252 and CVE-2025-24132, providing mDNS crash trigger and heap overflow reverse shell with multiple payload…

A tool to transform Chromium browsers into a C2 Implant

CROSS PLATFORM REMOTE ACCESS TROJAN (RAT)

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

Proof-of-Concept for CVE-2025-8088 vulnerability in WinRAR (path traversal via ADS)