
BrokenFlow
A simple PoC to invoke an encrypted shellcode by using an hidden call

A simple PoC to invoke an encrypted shellcode by using an hidden call

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Shellcode Encrypter & Decrypter via XOR Cipher

Burp Suite/antsword - Interactive shell (HTTP hijack + POST + AES-256-CBC/BASE64)

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

OpenSMTPD version 6.6.2 remote code execution exploit

A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

Proof-of-concept exploit for CVE-2019-0708 (BlueKeep) targeting Windows RDP, with shellcode for x86 systems. Intended for authorized security testing…

CVE-2024-6387 POC (Currently being edited)

PoC code for vulnerability in webmod v0.48. Originally written in 2007, assigned CVE-2007-1260.

Bypass bludit mitigation login form and upload malicious to call a rev shell

Exploit scripts for CVE-2021-41773 (Apache 2.4.49) enabling path traversal and remote code execution via CGI, including a reverse shell payload.

Patched GNU Bash 3.2 with a fix for CVE-2014-6271 (Shellshock). Provides a standard POSIX shell with command-line editing, job control, and history…

Antivirus evasion project

PowerSploit - A PowerShell Post-Exploitation Framework

Exploit for CVE-2019-9810 Firefox on Windows 64-bit.

An Attempt to Port BlueKeep PoC from @Ekultek to actual exploits