
EQGRP
Decrypted content of eqgrp-auction-file.tar.xz

Decrypted content of eqgrp-auction-file.tar.xz

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

OWASP Mth3l3m3nt Framework is a penetration testing aiding tool and exploitation framework. It fosters a principle of attack the web using the web as…

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Script to automate PUT HTTP method exploitation to get shell

Foxit PDF Reader Remote Code Execution Exploit

CVE-2023-2255 Libre Office

CVE-2026-8452 PreAuth RCE

Google Chrome CVE-2026-6307 PoC

WebLogic Insecure Deserialization - CVE-2019-2725 payload builder & exploit

PoC for Forgot2kEyXCHANGE (CVE-2020-0688) written in PowerShell

这里保存着我学习CVE-2012-1889这个漏洞的利用所用到的文件

CVE-2026-38526 exploit for Krayin CRM v2.2.x - Authenticated RCE via TinyMCE file upload bypass. Features interactive shell, multi-type payloads,…

CVE-2025-3969: Exploit PoC (OS CMD injection, Web Shell, Interactive Shell)

## 在kali中自动化生成cve-2017-8570的恶意ppsx文件和配置msf监听

https://bugs.chromium.org/p/project-zero/issues/detail?id=1820