
CopyEscape-CVE-2026-17106
PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

Self-healing RAT utilizing libp2p

Enhanced version of secretsdump.py from Impacket. Adds multi-threading and accepts an input file with a list of target hosts for simultaneous secrets…

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Netview enumerates systems using WinAPI calls

There are many cheat sheets out there, but this is mine.

Autonomous AI pentesting engine, continuous offensive security across web, cloud, AD & Kubernetes. Agentic reasoning + real exploit execution deliver…

Automated man-in-the-middle attack tool.

DHCP exhaustion script written in python using scapy network library

Nacker is a tool to circumvent 802.1x Network Access Control (NAC) on a wired LAN. Nacker will help you locate any non-802.1x configurable hosts on…


CVE-2025-53690 POC

Scanner and attack suite for hosts that forward unauthenticated packets via IPIP and GRE protocols. (CVE-2020-10136 CVE-2024-7595)


The `swp_debug` parameter in `admin-post.php` allows remote attackers to include external files containing malicious PHP code, which are evaluated on…

Proof-of-Concept (PoC) for CVE-2025-34028, a Remote Code Execution vulnerability in Commvault Command Center. This Python script scans single or…