
CVE-2017-9101
Authenticated remote code execution exploit for PlaySMS 1.4 via CSV phonebook upload. Provides single-command and interactive shell modes for…

Authenticated remote code execution exploit for PlaySMS 1.4 via CSV phonebook upload. Provides single-command and interactive shell modes for…

Testing CVE-2022-22968

Create your malicious engine in seconds

Exploit for Easy File Sharing FTP Server 3.5 on Win7 32

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Simple & Powerful PowerShell Script Obfuscator

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

CVE-2018-10933 very simple POC

A simple ptrace-less shared library injector for x64 Linux

Indirect syscalls + DInvoke made simple.

Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE

A simple tool to interact with web shells and command injection vulnerabilities

Simple dotnet Native AOT app that uses LibObjectFile to convert shellcode to ELF

A simple Docker lab and Exploit setup for CVE-2021-3156 - "Baron Samedit".

Quickly debug shellcode extracted during malware analysis

template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.

Windows x86 PoC: Stack‑based buffer overflow with custom shellcode on legacy 32-bit Windows.