
-CVE-2024-52010-
Automated exploit tool targeting CVE-2024-52010 for penetration testing and vulnerability validation.

Automated exploit tool targeting CVE-2024-52010 for penetration testing and vulnerability validation.
Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Automated deployment tool for CVE-2024-31317 PoC on Android 9-13, enabling privilege escalation via Zygote injection and reverse shell execution.

Go-based scanner and exploitation tool for CVE-2025-55182 (Next.js RCE). Supports batch scanning, command execution, Godzilla memory shell injection,…

An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized…

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

Automated RCE exploit for WordPress WPCode Lite v2.3.5. Executes 6-step exploitation chain via XML-RPC bypass with 8 built-in PHP payloads, including…

CVE-2024-10914 Shell Exploit

A tool to generate obfuscated one liners to aid in penetration testing

C# tool that generates malicious VBA macros with shellcode injection, VBA purging, and sandbox detection for red team operations.

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

Pop shells like a master.

A simple tool to interact with web shells and command injection vulnerabilities

Python-based antivirus evasion tool generating undetectable executables from msfvenom payloads with advanced techniques like junkcode injection,…

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

Proof-of-concept exploit for CVE-2019-0708 (BlueKeep) targeting Windows RDP, with shellcode for x86 systems. Intended for authorized security testing…

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

PoC code for vulnerability in webmod v0.48. Originally written in 2007, assigned CVE-2007-1260.