
exploitgym
ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Go package that aids in binary analysis and exploitation

Practical Windows malware development course: API hashing, DLL sideloading, shellcode execution, PE manipulation, payload hosting, and delivery labs.


Proof-of-concept PHP 8 sandbox escape exploiting a use-after-free bug to bypass disable_functions and execute system commands on Unix-like systems.

exploitdb-bin-sploits // Exploit-Database's binary exploits (what was located in the /sploits directory)

With the help of this docker image, you can easily access PEzor on your system!

Bypassing Linux Executable Space Protection using 20+ years old tools (CVE-2022-25265).

Atlassian Jira unauthen template injection

Automates creation and hosting of a JavaScript XSS payload to install a malicious theme module, triggering a reverse shell via Remote Code Execution…

This is a hypothetical demonstration of the process involved in exploiting LogoFail, it theoretically includes the necessary steps.

ChakraCore exploitation techniques

React Server Components 远程代码执行漏洞(CVE-2025-55182)

Easy-to-understand version of CVE-2026-31431

React2Shell (CVE-2025-55182) Exploit

Apache Tomcat CGI Servlet RCE (Windows)

Proof-of-concept demonstrating remote code execution via prompt injection in GitHub Copilot Chat, using a crafted Python file to trigger a…