
WP2Shell
Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Command-line security assessment framework for React and Next.js applications, analyzing React Server Components for misconfigurations, with…

React2Shell-Exploit — Complete exploitation framework for CVE-2025-55182, including Python exploit, Docker vulnerable lab, Burp Suite manual and…

CVE-2025-6389

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods


YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…

Tools for auditing WAFS