
Laravel-8.4.2-rce-CVE-2021-3129
Python exploit for CVE-2021-3129, a remote code execution vulnerability in Laravel 8.4.2. Includes Docker environment for local testing and requires…

Python exploit for CVE-2021-3129, a remote code execution vulnerability in Laravel 8.4.2. Includes Docker environment for local testing and requires…

Proof-of-concept exploit for CVE-2023-39362, an authenticated command injection in Cacti's SNMP options. Includes a vulnerable Docker environment for…

Docker-based lab reproducing CVE-2023-26482 (Nextcloud RCE) with automated exploit script for educational vulnerability analysis and exploitation…

A script used to create a whonix like gateway/workstation environment with docker containers.

Docker lab environment with PoC exploit and checker for CVE-2026-20253, a pre-auth RCE in Splunk Enterprise via the PostgreSQL sidecar service.

Automated Mass Exploiter

Lab4PurpleSec is a modular Purple Team homelab combining a vulnerable Active Directory environment (GOAD), a Docker-based web DMZ, pfSense +…

Python-based exploit for CVE-2025-55182 (React Server Components RCE) with interactive shell, reverse shell, batch scanning, and Docker-based…

Dockerized exploit for CVE-2022-22947 targeting Spring Cloud Gateway. Provides a ready-to-use environment for testing and demonstrating the remote…

Automated WiFi hacking lab environment using mininet-wifi to simulate wireless attack vectors for pentester training, eliminating hardware overhead.

KLAIOS is a hybrid security environment that merges Kali Linux’s offensive toolkit with hardened, VPN-bunker-style isolation—enhanced by modern AI…

Functional DoS exploit for CVE-2021-32675 in Redis, leveraging oversized bulk string headers to trigger memory exhaustion. Includes usage…

Proof-of-concept exploit for CVE-2022-1329, a remote code execution vulnerability in WordPress Elementor 3.6.0-3.6.2. Includes Docker-based…

Proof-of-concept exploit for CVE-2021-41773, enabling remote code execution and CGI-bin path traversal on Apache HTTP Server 2.4.49. Includes…

POC for CVE-2025-33053 WebDav Exploit, demonstrating how the vulnerability can be triggered in a real environment. This repository focuses on…

Docker-based proof-of-concept exploit for CVE-2019-19356, enabling rapid reproduction and testing of the vulnerability in a controlled environment.

Proof-of-concept exploit for Apache HTTP Server 2.4.49/2.4.50 path traversal vulnerability (CVE-2021-41773) enabling remote code execution via CGI…

Docker-based lab for detecting and exploiting CVE-2025-55182 (React2Shell RCE) in Next.js/React Server Components, with pre-configured vulnerable…