
dicerosbicornis
A fully featured Windows backdoor that uses email as a C&C server

A fully featured Windows backdoor that uses email as a C&C server

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

Android kernel exploit for CVE-2026-43499 (Futex-PI use-after-free) that gains temporary root on Xiaomi XIG04 to enable ADB. Includes automated…

Hacked up Dirty Pipe (CVE-2022-0847) PoC that hijacks a SUID binary to spawn a root shell. (and attempts to restore the damaged binary as well)

Simple dotnet Native AOT app that uses LibObjectFile to convert shellcode to ELF

Recreating Shellshock (CVE-2014-6271) - the bash vulnerability that endangered millions of servers. Automated exploitation toolkit + Burp Suite…

A proof-of-concept exploit for CVE-2025-32433, a critical vulnerability in Erlang's SSH library that allows pre-authenticated code execution via…

Proof of Concept (PoC) that exploits the CVE-2025-49144 vulnerability in the Notepad++ 8.8.1 installer.

A simple exploit that uses dirtypipe to inject shellcode into runC entrypoint to implement container escapes.

Rig Exploit for CVE-2018-8174 As with its previous campaigns, Rig’s Seamless campaign uses malvertising. In this case, the malvertisements have a…

Rejetto HFS (HTTP File Server) is a simple web file server that facilitates file sharing over a network or the internet.

This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220

Shellcode-based process protection that prevents thread suspension, blocks debugger attach, masks hardware breakpoints, and hides threads from…

🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs



Converts PE into a shellcode