
MeterPwrShell
Automated Tool That Generates The Perfect Meterpreter Powershell Payload

Automated Tool That Generates The Perfect Meterpreter Powershell Payload

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

From Dork to Download: Automating Google Dorks with Playwright

Multi-technique vulnerability detector for CVE-2025-55182 in React/Next.js applications. Tests gadget chains, RCE payloads, and WAF bypass variants…

Exploit for CVE-2024-4577 PHP-CGI RCE on Windows, with WAF bypass and SSRF support. Provides multiple exploit variants for default, WAF, and SSRF…

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that…

Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)

CVE-2025-55182 RCE vulnerability in Next.js/React RSC servers (exploit and scanner)

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

Local file inclusion exploitation tool

XSSYA (Cross Site Scripting Scanner & Vulnerability Confirmation)

RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

CVE-2025-55182复现环境及RCE回显poc

🛡️ Explore CVE-2025-55182, a critical RCE vulnerability in React's Flight Protocol, demonstrating exploitation techniques and mitigation strategies.

A evolved version of assetnote CVE-2025-55182 scanner

Advanced security testing tool for CVE-2025-55182 vulnerability assessment in Next.js applications. Features interactive shell, batch scanning, WAF…