
C2-Pwn
Uses Shodan API to pull down C2 servers to run known exploits on them.

Uses Shodan API to pull down C2 servers to run known exploits on them.

Claude Code Remote Code Execution

Source code for SubSeven 2.1.3

:mouse: This is a cross-platform Python 2.x Remote Access Trojan (RAT)

A WiFi Pineapple infecting worm.

POC for CVE-2026-78006 The Events Calendar <= 6.17.4 - Unauthenticated PHP Object Injection to Remote Code Execution

Exploiting Python PIL Module Command Execution Vulnerability

Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain

Automated proof-of-concept exploit for CVE-2021-44521, enabling remote code execution on Apache Cassandra via user-defined functions. Executes…

CVE-2025-62593 — Ray Unauthenticated RCE Exploit is an unauthenticated remote code execution vulnerability in the Ray distributed AI compute engine.

An example of a remote administration tool.

Metasploit module for exploiting Veritas Backup Exec Agent SHA-auth NDMP vulnerability to achieve remote code execution.

Proof of Concept for CVE-2026-0770 - Langflow Remote Code Execution

Code Roulette is a terminal interface based (TUI), online multiplayer, Russian Roulette game where the loser executes the winner's Python payload…

Proof-of-concept exploit for CVE-2023-38408, demonstrating remote code execution in OpenSSH's forwarded ssh-agent.

Exploit for Atlassian Confluence RCE (CVE-2023-22527) that executes arbitrary commands on vulnerable servers via OGNL injection.

PoC RAT using the sneaky-creeper data exfiltration library