
redsnarf
RedSnarf is a pen-testing / red-teaming tool for Windows environments

RedSnarf is a pen-testing / red-teaming tool for Windows environments

CVE-2025-55182 RCE vulnerability in Next.js/React RSC servers (exploit and scanner)

An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized…

An all-in-one hacking tool to remotely take over Android devices.

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.

Venom - A Multi-hop Proxy for Penetration Testers

🔒 Modern C2 Platform with Cloudflare Tunnel Integration | WinRM & SSH Remote Management | Real-time Terminal & Remote Desktop | Built with FastAPI &…

Yet Another PHP Shell - The most complete PHP reverse shell

Zero-click authentication bypass exploit for Android ADB Wireless Debugging (CVE-2026-0073). Provides interactive shell, command execution, and…

A PoC tool for the CVE-2026-0073 on android 11+ devices which allows instant zero click RCE on any unpatched device with adb over tcp enabled

Demonstrate exploitation of Signal K Server CVE-2025-66398 allowing unauthenticated attackers to inject backdoor and enable remote code execution.

Unauthenticated RCE in dedoc/scramble — PoC, Nmap NSE & Nuclei template.

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

💉 Blind SQL Injection → RCE exploit for Control Web Panel (CWP) ≤ 0.9.8.1224 — userRes POST → INTO DUMPFILE → cwpsvc shell

DJ-Classifieds Joomla Component Unauthenticated File Upload RCE. 3-string filter bypass via PHP short tags. CVSS 10.0 | CWE-434 | com_djclassifieds <…

Windows Server 2003 & IIS 6.0 - Remote Code Execution

Suite for reverse shell handling geared toward working within the native shell