
Medusa
Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

Proof-of-concept exploit for CVE-2024-24824 demonstrating how an arbitrary class loading primitive can be transformed into remote code execution on…

Spring4Shell (CVE-2022-22965) 漏洞環境搭建與 CTF 題目

CVE-2026-42588 - Apache ActiveMQ Jolokia 远程代码执行漏洞利用 (RCE Exploit)

CVE-2026-44403-WingFTP-v8.1.2-POC-Exploit

Automated exploit for CVE-2025-66034, chaining path traversal and XML injection in fontTools varLib to achieve unauthenticated remote code execution…

Chisel new generation, written in rust. SSH under WSS with some customization.

PaperCut NG/MG Authentication Bypass and Remote Code Execution (RCE) Exploit Tool. A standalone Bash implementation of the PaperCut exploit chain,…

A complete framework for exploiting the vulnerability CVE-2025-55182


Working proof of concept for NextJS RCE to establish a reverse shell. [React2Shell]

This POC demonstrates CVE-2025-55182 using actual `[email protected]` vulnerable code.

Handlebars CVE-2021-23369 Vulnerability



CVE-2022-40635: Groovy Sandbox Bypass in CrafterCMS