
Burp-Encode-IP
Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.

Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.

Go-based exploit for CVE-2021-43858 targeting MinIO privilege escalation vulnerability. Executes against a specified IP and port to demonstrate the…

A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root

Exploits for Typecho CVE-2024-35538, CVE-2024-35539 and CVE-2024-35540

cURL one-liner to test for CVE-2022-1388 BIG-IP iControl REST RCE

Python exploit script for CVE-2020-5902 (F5 BIG-IP) supporting local file read and remote code execution via crafted HTTP requests.

A DNS rebinding attack framework.

Remote Code Execution Exploit for Citrix Application Delivery Controller and Citrix Gateway [ CVE-2019-19781 ]

NAT Tunnel: to effortlessly serve from behind NAT

Tor transport bridge for Sliver C2 - anonymous command and control

Exploit for CVE-2025-55616, a local RCE in Zsh via history expression, achieving arbitrary code execution with user privileges.

F5 BIG-IP Exploit Using CVE-2022-1388 and CVE-2022-41800

Bash tool that routes all system network traffic through Tor for IP anonymization, with manual/automatic IP rotation and current IP/location display.

Attacks for $5 or less using Arduino

Chaining Havoc C2 SSRF with RCE to get reverse shell on Havoc C2 Server.

Python PoC for CVE-2025-24071 that crafts a .library-ms file to coerce Windows Explorer into leaking NetNTLMv2 hashes over SMB for capture and…

Python-based PoC for CVE-2023-46214 that exploits Splunk's adddatamethods feature to achieve remote code execution via a reverse shell.

Proof of concept for CVE-2020-5902