
vbsmin
VBScript minifier

VBScript minifier

Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

Reproduces ZendTo unauthenticated ClamAV RCE and root privilege escalation in an authorized lab, with pinned Docker target, fail-closed verification,…

WordPress Core Pre-Auth RCE — Batch Route Confusion + SQL Injection

Multi-platform Python webshell providing remote shell access on web servers with command history, file upload/download, and directory traversal…

A proof-of-concept for CVE-2026-39987

Authenticated Blind OS Command Injection in ClearOS

📤 Mass exploitation framework for CVE-2026-56290 — Page Builder CK Joomla unauthenticated file upload to RCE

Professional extension of sqlmap project

Penetration test of a Drupal web app — CVE-2018-7600 (Drupalgeddon 2) exploited using Nmap, Burp Suite & Metasploit | Internship @ BB CyberSec

This framework is designed to assist penetration testers or developers in understanding the mechanics of remote code execution (RCE) exploitation.

The CSRF Exploit Generator allows users to generate a CSRF exploit form with configurable parameters.

Exploit for CVE-2026-41940 providing direct shell access via websocket and persistence through root API key injection.

Xss Payload Generator ~ Xss Scanner ~ Xss Dork Finder

this is a metasploit exploit module for CVE-2024-25096 and CVE-2023-3452

Proof-of-concept exploit for CVE-2026-20127, a pre-auth RCE in Cisco SD-WAN Manager/Controller enabling admin access and network configuration…

This script automates SQL injection testing using SQLMap with AI-powered decision making.