
CVE-2020-11932
Proof-of-concept exploit for CVE-2020-11932, a double-free vulnerability in WhatsApp GIF processing, enabling remote code execution via crafted .gif…

Proof-of-concept exploit for CVE-2020-11932, a double-free vulnerability in WhatsApp GIF processing, enabling remote code execution via crafted .gif…

Python exploit for CVE-2018-10933 that bypasses libssh server authentication and spawns an unauthenticated shell on vulnerable SSH servers.

Proof-of-concept exploit for CVE-2021-21300, demonstrating remote code execution via malicious git repository cloning with symlink and filter abuse…

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

Get Keyboard,Mouse,ScreenShot,Microphone Inputs from Target Computer and Send to your Mail.

Get teamviewer's ID and password from a remote computer in the LAN

Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

Pentestmonkeys' PHP reverse shell with dynamic host and port passing through GET request parameters

A combination of CVE-2026-55494 and CVE-2026-62308 to get root privilege RCE in tugtainer

50 first stargazers will get get the tool via email

CVE-2007-2447 exploit written in python to get reverse shell

An exploit to get root in vsftpd 2.3.4 (CVE-2011-2523) written in python

double-free bug in WhatsApp exploit poc

Double-Free BUG in WhatsApp exploit poc.

A Windows Remote Administration Tool in Visual Basic with UNC paths

Exploit used against the Netgear R6700v3 during Pwn2Own Austin 2021

A collection of selenium tests that might aid it takeover of a selenium node

Full walkthrough of HTB's Reactor machine — exploit CVE-2025-55182 to gain a shell, then get root via an exposed Node.js debugger. Step-by-step with…