
JYso
Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的代码,帮助红队人员更方便快…

Reverse shell generator written in Python 3.

Metasploit AV Evasion Tool

Patching ROP-encoded shellcodes into PEs

Deploy payloads to *Nix systems en masse

A simple PoC to invoke an encrypted shellcode by using an hidden call



Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.

Proof of concept python script for regreSSHion exploit.

CVE-2026-53921 – odhcpd Stack Overflow (CVSS 9.8) 🛡️ Vuln detailed and comprehensive Write-Up and Verifier & Multi-exploit for OpenWrt DHCPv6 RCE.…

Multi-module offensive security toolkit for SOCKS5 proxy chaining, port scanning, DNS enumeration, hash cracking, reverse shell generation,…

Python 3 exploit for CVE-2019-3980. Unauthenticated RCE as SYSTEM via SolarWinds Dameware MRC smart card authentication bypass.

Palo Alto - CVE-2026-0300 exploit

OpenSTAManager RCE Exploit (CVE-2026-38751)

Suite for reverse shell handling geared toward working within the native shell