
n00bRAT
Remote Administration Toolkit (or Trojan) for POSiX (Linux/Unix) system working as a Web Service

Remote Administration Toolkit (or Trojan) for POSiX (Linux/Unix) system working as a Web Service

Fast TCP/UDP tunnel over HTTP with SSH encryption, supporting reverse port forwarding, SOCKS5 proxy, and client authentication for secure network…

Android remote administration tool

Python Remote Administration Tool (RAT) to gain meterpreter session

The SteaLinG is an open-source penetration testing framework designed for social engineering

Malicious PixelCode is a security research project that demonstrates a covert technique for encoding executable files into pixel data and storing…

Proof-of-concept exploit for CVE-2026-75604, an unauthenticated remote code execution in Windows-hosted Next.js apps, with callback-based command…

A python based https remote access trojan for penetration testing

Modern PIC implant for Windows (64 & 32 bit)

Reverse NTP remote access trojan in python, for penetration testers

CHAOS RAT web panel path RCE PoC

Python-based scanner and exploit for Apache Struts2 S2-062 (CVE-2021-31805) remote code execution, supporting batch scanning and command execution.

Proof-of-concept exploit for CVE-2026-33725, achieving remote code execution and arbitrary file read via H2 JDBC INIT injection in Metabase…

POC for CVE-2026-78006 The Events Calendar <= 6.17.4 - Unauthenticated PHP Object Injection to Remote Code Execution

Automated proof-of-concept exploit for CVE-2021-44521, enabling remote code execution on Apache Cassandra via user-defined functions. Executes…

Proof-of-concept exploit for CVE-2019-2107, demonstrating remote code execution via crafted HEVC video on Android media framework. Includes crash…

Proof of Concept for CVE-2026-0770 - Langflow Remote Code Execution

Exploit for Atlassian Confluence RCE (CVE-2023-22527) that executes arbitrary commands on vulnerable servers via OGNL injection.