
CVE-2026-16723
Reproduces fastjson 1.2.83 @JSONType RCE with a vulnerable Spring Boot target and ASM-based payload generator using HTTP or file protocol jar chains.

Reproduces fastjson 1.2.83 @JSONType RCE with a vulnerable Spring Boot target and ASM-based payload generator using HTTP or file protocol jar chains.

Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This…

This is a webshell open source project

Tools and Techniques for Red Team / Penetration Testing

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

The all-in-one browser extension for offensive security professionals 🛠

All about bug bounty (bypasses, payloads, and etc)

The ultimate WinRM shell for hacking/pentesting

The LAZY script will make your life easier, and of course faster.

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Deserialization payload generator for a variety of .NET formatters

Python Remote Administration Tool (RAT)

A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers