
backdoorme
SSH-based post-exploitation framework deploying persistent backdoors (bash, Python, Metasploit) with modules for cron, startup, and privilege…

SSH-based post-exploitation framework deploying persistent backdoors (bash, Python, Metasploit) with modules for cron, startup, and privilege…

Exploit for Oracle WebLogic CVE-2018-2628 that tests vulnerable servers, uploads webshells, and executes remote commands via JRMP deserialization and…

Exploit for Apache Axis 1.4 remote code execution (CVE-2019-0227) with Metasploit listener integration and JSP payload deployment.

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

Exploit script for CVE-2018-20250 (WinRAR ACE path traversal) with integrated Metasploit payload generation and reverse shell delivery for…

Python exploit for WordPress 5.0.0 achieving remote code execution via CVE-2019-8942 and CVE-2019-8943, with crop-image shell upload technique.

Icecast Header Overwrite buffer overflow RCE < 2.0.1 (Win32)

Standalone Python ≥3.6 RCE Unauthenticated exploit for Supervisor 3.0a1 to 3.3.2

PS5 homebrew enabler payload offering post-exploitation features: custom plugin/payload loading, unsigned fself/fpkg support, debug settings, FTP…

Lightweight Go binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy for ephemeral red team access. Supports…

Proof-of-concept exploit for CVE-2019-3980 enabling remote command execution via custom C# payload with HTTP callback for output retrieval.

PoC exploit for CVE-2026-33017: unauthenticated remote code execution in Langflow via malicious Python Custom Component injection, with built-in…

Python exploit for CVE-2024-24590 that uploads a malicious pickle file to ClearML, enabling reverse shell or custom command execution on the target…

Exploit tool for Redis 4.x/5.x that achieves remote code execution by loading a custom RedisModule (exp.so) through a rogue server, enabling…

Python3 exploit for CVE-2007-2447 targeting Samba 3.0.20-3.0.25rc3 with Netcat reverse shell and custom command execution support.

Python exploit for CVE-2022-42889 (Text4Shell) enabling remote code execution via Apache Commons Text interpolation. Supports reverse shell…

Python-based exploit for CVE-2021-35448 targeting Remote Mouse, enabling remote code execution via custom commands or reverse shells on Windows…

Python exploit for MS08-067 (CVE-2008-4250) targeting Windows XP/2000/2003 via SMB. Supports custom shellcode, multiple OS versions, and port…