
HTMLSmuggler
✉️ HTML Smuggling generator&obfuscator for your Red Team operations

✉️ HTML Smuggling generator&obfuscator for your Red Team operations

Bash simulator to control a server using PHP system functions.

CVE-2020-20093; 20094; 20095; 20096, 2022-28345 RTLO Injection URI Spoofing

IPv6 analysis tool: the other side

Tool to bypass 40X response codes.

CRLFMap is a tool to find HTTP Splitting vulnerabilities

burp伪造ip爆破脚本

POC code according to trendmicro's research


Header bypass for CVE-2025-55182 (React Server Components RCE).

Exploit for CVE-2021-45468, an Imperva WAF bypass.

Cloudflare Image Resizing <= 1.5.6 | Unauthenticated Remote Code Execution

A sophisticated, wizard-driven Python exploit tool targeting CVE-2025-53770, a critical (CVSS 9.8) unauthenticated remote code execution (RCE)…

Red Team utilities for setting up CWP CentOS 7 payload & reverse shell (Red Team 9 - CW2023)


CitrixBleed-2 (CVE-2025-5777) – proof-of-concept exploit for NetScaler ADC/Gateway “memory bleed”