
RecycledInjector
Native syscall shellcode injector using HellsGate/HalosGate/TartarusGate for undetectable execution, with external shellcode loading and EDR evasion…

Native syscall shellcode injector using HellsGate/HalosGate/TartarusGate for undetectable execution, with external shellcode loading and EDR evasion…

Convert shellcode into :sparkles: different :sparkles: formats!

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

Python-based forward shell tool that creates a TTY-like interactive shell over HTTP using named pipes, enabling command execution on firewalled…

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same network to gain…

CVE-2019-9729. Transferred from https://github.com/DoubleLabyrinth/SdoKeyCrypt-sys-local-privilege-elevation

WAMpage - A WebOS root LPE exploit chain (CVE-2022-23731)

NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection

D-Link DSL-3782 Code Execution (Proof of Concept)

Hardware Sandbox Toolkit

Proof-of-concept exploit for CVE-2022-0847 (Dirty Pipe) enabling local privilege escalation on Linux kernels 5.8–5.16 via pipe buffer manipulation…

Royal Elementor Addons - Unauthenticated Remote Code Execution

Testing CVE-2022-22968

Python exploit for CVE-2025-6002 targeting authenticated arbitrary file upload in VirtueMart < 4.4.10. Logs in, uploads a PHP webshell, and triggers…

WonderCMS v3.2.0 - v3.4.2 XSS to RCE exploit

Python exploit for CVE-2019-11447 that uploads a PHP reverse shell to CuteNews 2.1.2, enabling remote command execution on vulnerable web…