
jsch
fork of the popular jsch library

fork of the popular jsch library

Tunnel TCP connections through a file

CVE-2021-44228 Log4Shell - Apache Log4j2 JNDI Injection RCE

A community-curated, verified collection of Proof-of-Concept exploits for CVEs disclosed in 2026.

💉 Blind SQL Injection → RCE exploit for Control Web Panel (CWP) ≤ 0.9.8.1224 — userRes POST → INTO DUMPFILE → cwpsvc shell

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

This is an exploit poc for CVE-2026-4480

:hammer: A modern, cross-platform machine manager


PHP poc, exploit for CVE-2025-9074

ICMP-based command-and-control tool that tunnels C2 traffic through firewalls using ping payloads, undetectable by most AV/EDR solutions.

CVE-2026-34197 activemq PoC

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.



This is a POC for testing your projects that are vulnerable to CVE-2025-55182 with a terminal and ability to scan a list