
CVE-2026-78006-POC
POC for CVE-2026-78006 The Events Calendar <= 6.17.4 - Unauthenticated PHP Object Injection to Remote Code Execution

POC for CVE-2026-78006 The Events Calendar <= 6.17.4 - Unauthenticated PHP Object Injection to Remote Code Execution

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Android remote administration tool

Mac OS Trojan (RAT) made with love <3

Automated proof-of-concept exploit for CVE-2021-44521, enabling remote code execution on Apache Cassandra via user-defined functions. Executes…

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

Proof-of-concept exploit for CVE-2019-2107, demonstrating remote code execution via crafted HEVC video on Android media framework. Includes crash…

Proof-of-concept exploit for CVE-2026-75604, an unauthenticated remote code execution in Windows-hosted Next.js apps, with callback-based command…

Proof of Concept for CVE-2026-0770 - Langflow Remote Code Execution

DarkAgent Remote Administration Tool RAT by DragonHunter

Android Remote Access Trojan

Unauthenticated remote code execution exploit for PowerJob Server via Groovy injection in the /friend/process endpoint, enabling arbitrary command…

Reverse NTP remote access trojan in python, for penetration testers

A python based https remote access trojan for penetration testing

Metasploit module for exploiting Veritas Backup Exec Agent SHA-auth NDMP vulnerability to achieve remote code execution.

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

A client and chat program for njrat 0.6.4, 0.7d, and 0.7d golden edition.

The SteaLinG is an open-source penetration testing framework designed for social engineering