
WP2Shell
Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others)

Successor of Undetected-Chromedriver. Providing a blazing fast framework for web automation, webscraping, bots and any other creative ideas which are…

Advanced SQL Injection Scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

A Modular Framework for Pentesters and Bug Hunters written in python.

React2Shell: An exploitation framework for CVE-2025-55182 (Next.js/React RCE).

An advanced command-line framework for discovery, validation, and exploitation of CVE-2025-55182 and CVE-2025-66478 affecting Next.js applications…

React2Shell-Exploit — Complete exploitation framework for CVE-2025-55182, including Python exploit, Docker vulnerable lab, Burp Suite manual and…

CVE-2025-6389

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods


YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…

Automated Tool That Generates The Perfect Meterpreter Powershell Payload

Tools for auditing WAFS