
watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452
Proof-of-concept exploit for Citrix NetScaler CVE-2026-8452 that verifies pre-auth RCE by building shellcode and executing commands through a…

Proof-of-concept exploit for Citrix NetScaler CVE-2026-8452 that verifies pre-auth RCE by building shellcode and executing commands through a…

Exploit toolkit for PAN-OS Captive Portal CVE-2026-0300 with a version-aware scanner, version-specific payload generator, and detection/crash/RCE…

Collection of leaked NSA Equation Group exploits, backdoors, and tools for post-exploitation, privilege escalation, and command-and-control across…

Automated exploit generator for CVE-2017-8570 that creates malicious PPSX files and configures Metasploit listeners for remote shell access.

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

Python exploit for Webmin CVE-2022-0824 with dual-mode support: direct command execution and reverse shell. Features multiple payload types,…

Generates JavaScript payloads to exploit CVE-2024-28397 Js2Py sandbox escape, enabling remote command execution and reverse shells via Python…

Suite for reverse shell handling geared toward working within the native shell

Microsoft-Office-Word-MSHTML-Remote-Code-Execution-Exploit

Malicious DOCX generator exploiting CVE-2021-40444 (Microsoft Office Word RCE) with CAB-based DLL side-loading and CAB-less RAR/WSF attack chains for…

Proof-of-concept exploit for CVE-2021-30632, a Chrome V8 vulnerability, demonstrating reliable shellcode execution via out-of-bounds write to achieve…

Multi-CVE WebLogic deserialization exploit builder with support for process builder, serialized, and URL-based payloads, enabling remote command…

a exp for cve-2018-9948/9958 , current shellcode called win-calc

Personal learning repository for CVE-2012-1889 exploitation, containing exploit HTML, shellcode converters, debugger tools, and ROP chain generation…

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Compile Go and C# programs into WASM-sandboxed native executables with polymorphic output, ghost profiling, and transparent Win32/macOS API bridging…

Custom CAB template generator for CVE-2021-40444, crafting malicious cabinet archives to exploit Windows MSHTML remote code execution via crafted…

Foxit PDF Reader Remote Code Execution Exploit