
SirepRAT
Remote Command Execution as SYSTEM on Windows IoT Core (releases available for Python2.7 & Python3)

Remote Command Execution as SYSTEM on Windows IoT Core (releases available for Python2.7 & Python3)

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

Embedded Linux backdoor with remote command-and-control console, supporting cross-compilation for embedded devices and red team operations.

Proof-of-concept exploit that enables telnet access on Hisilicon DVR/NVR devices for security research and penetration testing.

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera

Proof-of-concept exploit for CVE-2023-6319 that spawns a root telnet shell on vulnerable LG webOS TV devices via a Python script.

Python-based tool to remotely enable telnet on Netgear routers using default vendor credentials for security testing.

Exploit for stack-based buffer overflow found in the conn-indicator binary in the TP-Link Archer AX50 router

Proof-of-concept exploit for CVE-2023-20126 targeting Cisco SPA phone adapters. Uploads malicious firmware to gain a root shell on port 23000/tcp via…

Proof-of-concept exploit for CVE-2025-2620, a critical stack-based buffer overflow in D-Link DAP-1620 routers enabling unauthenticated remote code…

A Python script for generating exploits targeting CVE-2022-4510 RCE Binwalk. It supports SSH, command execution, and reverse shell options. Exploits…

Proof of concept for the command injection vulnerability affecting the ZTE MF286R router, including an RCE exploit.

Exploit for CVE-2022-4510 enabling remote command execution in Binwalk firmware analysis tool. Provides proof-of-concept code for security testing…

🔐 "PWNTAPO: Unveiling Command Injection in TP-Link Tapo C200 Cameras (<= v1.1.16 Build 211209)" 🔓

Technical vulnerability report and proof-of-concept exploit for an LSC Smart Connect Camera, abusing the SD-card update hook to spawn a root shell…

Developer-focused provisioning sidekick for U-Boot-based SBCs. Provides remote access, serial console multiplexing, kernel/rootfs provisioning,…

Exploit used against the Netgear R6700v3 during Pwn2Own Austin 2021

Exploits for Tenda Ac8v4 stack-based overflow to Remote-Code Execution via Mipsel Ropping (CVE-2023-33669 - CVE-2023-33675)