
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Fast TCP/UDP tunnel over HTTP with SSH encryption, supporting reverse port forwarding, SOCKS5 proxy, and client authentication for secure network…

Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.

Exploit for CVE-2022-46169 in Cacti, enabling unauthenticated remote code execution via crafted HTTP requests to remote_agent.php.

Client for Cloudflare Tunnel enabling secure outbound-only connections to origins via Zero Trust architecture. Supports HTTP, WebSocket, SSH, and RDP…

The first vulnerability with the CVE identifier CVE-2021-41773 is a path traversal flaw that exists in Apache HTTP Server 2.4.49.

Proof-of-concept exploit for CVE-2024-36401 enabling remote code execution via HTTP requests with reverse shell payload generation and Base64…

Proof-of-concept exploit for CVE-2015-1635 (MS15-034), demonstrating remote code execution in HTTP.sys via crafted HTTP requests on vulnerable…

Metasploit-Framework modules (scanner and exploit) for the CVE-2021-41773 and CVE-2021-42013 (Path Traversal in Apache 2.4.49/2.4.50)

Exploit for CVE-2021-31166 targeting HTTP Protocol Stack RCE in Windows 10 and Server versions 2004/20H2, enabling remote code execution via crafted…

Powershell reverse shell using HTTP/S protocol with AMSI bypass and Proxy Aware

POC - Unauthenticated RCE Flaw in Rejetto HTTP File Server - CVE-2024-23692

CVE-2026-23744 - Versions 1.4.2 and earlier of MCPJam inspector are vulnerable to remote code execution (RCE). Because the tool listens on 0.0.0.0 by…

Python exploit for Apache Tomcat CVE-2017-12617 RCE vulnerability. Checks targets, generates webshells, and provides remote shell access on systems…

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)

PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels

Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution

[POC] Asynchronous reverse shell using the HTTP protocol.