
CVE-2021-32675
Functional DoS exploit for CVE-2021-32675 in Redis, leveraging oversized bulk string headers to trigger memory exhaustion. Includes usage…

Functional DoS exploit for CVE-2021-32675 in Redis, leveraging oversized bulk string headers to trigger memory exhaustion. Includes usage…

Elite exploitation toolkit for CVE-2025-55182 (React Server Components RCE). Async polymorphic payloads, advanced WAF/CDN bypass, proxy rotation,…

Proof-of-Concept for CVE-2025-33053 Exploiting WebDAV with .url file delivery to demonstrate realistic remote code execution. Includes a decoy PDF…

Repo contains the PoC and steps to reproduce cve 2023-38646

Proof-of-concept exploit for CVE-2026-41900, an unauthenticated remote code execution in OpenLearnX via container volume mount, enabling /tmp…

Proof-of-concept exploit for CVE-2026-35585, an OS command injection vulnerability in File Browser (versions 2.0.0 to 2.33.1). Includes Python and…

Detailed analysis and proof-of-concept exploit for CVE-2023-22515, a critical broken access control vulnerability in Atlassian Confluence Data Center…

CVE-2017-12615 Tomcat: Remote Code Execution via JSP Upload Home Lab for Red Teaming, Penetration Testing

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool

(PoC) Python version of CVE-2019-11043 exploit by neex

Abuses Windows Hello from a privileged context to enumerate protectors, decrypt keys, extract PRT/TGT tokens, proxy WebAuthn requests, and dump…


Kali365 - EvilTokens Replica

OpenClaw Authentication Token Exfiltration

CVE-2024-32462 code exec sbx escape


My manifesto, and stories, images, and phun stuff

Demonstrates a real-world zero-trust bypass by exploiting BIND CVE-2025-40775 to disrupt DNS, break secret rotation, and expose static credentials in…