
wsuks
Automated WSUS MITM tool that spoofs Windows Update traffic over ARP, serves a signed executable with PowerShell payload, and escalates to local…

Automated WSUS MITM tool that spoofs Windows Update traffic over ARP, serves a signed executable with PowerShell payload, and escalates to local…

Authenticated remote code execution exploit for Windows Admin Center via WinREST/PowerShell invokeCommand; takes credentials and runs arbitrary…

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Exploit for Apache Airflow FAB OAuth authentication bypass (CVE-2026-59243) that achieves admin access and remote code execution by triggering a…

Exploit for CVE-2026-15013: unauthenticated SAML auth bypass via algorithm confusion. Forges SAML responses to gain admin access and deploy…

Multi-vector exploit framework for CVE-2026-60206 targeting Oracle WebLogic Server SAML authentication bypass, with mass scanning, safe detection,…

Reproduction of CVE-2026-41940, a critical authentication bypass in cPanel & WHM. Provides a proof-of-concept exploit to forge session tokens and…

Proof-of-concept exploit for WordPress REST API time-based blind SQL injection (CVE-2026-63030, CVE-2026-60137) with full chain escalation to remote…

Python PoC for CVE-2026-8181, a critical authentication bypass in Burst Statistics WordPress plugin. Includes exploit automation, bulk scanning, and…

Proof-of-concept exploit for CVE-2026-63030 chaining REST API route confusion, SQL injection, oEmbed cache poisoning, and Customizer privilege…

Unauthenticated WordPress RCE exploit chain chaining route confusion (CVE-2026-63030) with SQL injection (CVE-2026-60137) to create an admin account…

Unauthenticated remote code execution exploit for the WC Designer Pro WordPress plugin. Automates detection, file upload, and shell access via a…

Python exploit for CVE-2026-55579, an unauthenticated RCE in Pheditor via hardcoded default credentials. Executes commands and uploads files through…

Unauthenticated privilege escalation exploit for Microsoft SharePoint Server (CVE-2026-56164). Escalates from anonymous to Site Collection…

Automated exploit and mass scanner for CVE-2026-5118, an unauthenticated privilege escalation in WordPress Divi Form Builder <=5.1.2, enabling admin…

Exploit for CVE-2026-38526 targeting Krayin CRM's unrestricted file upload. Uploads PHP webshell for remote command execution via admin credentials.

In Packetfence 13.2.0, the WebGui interface setting allows authenticated remote code execution

Authenticated remote code execution exploit for CVE-2023-4861 in WordPress Filester plugin. Automates file upload, webshell deployment, and command…