
NetLlix
A project created with an aim to emulate and test exfiltration of data over different network protocols.

A project created with an aim to emulate and test exfiltration of data over different network protocols.

Multi-target unauthenticated RCE scanner for CVE-2025-34085 affecting WordPress Simple File List plugin. Uploads, renames, and triggers PHP webshells…

All about CVE-2022-30190, aka follina, that is a RCE vulnerability that affects Microsoft Support Diagnostic Tools (MSDT) on Office apps such as…

一个针对shiro反序列化漏洞(CVE-2016-4437)的快速利用工具/A simple tool targeted at shiro framework attacks with ysoserial.

Just simple PoC for the Atlassian Jira exploit. Provides code execution for unauthorised user on a server.

C# tool for exfiltrating files over DNS using XOR and asymmetric encryption, designed for red team engagements with restricted outbound connections.

Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

simple bash script for exploit CVE-2021-31166

Small PHP shell, Controlled by Python Client , connecting over protocol method

CMS Made Simple 2.2.7 RCE exploit

Hooked browser communication over MQTT

Remote code execution exploit for Citrix Application Delivery Controller and Gateway (CVE-2019-19781). Executes arbitrary commands on vulnerable…

This is a simple POC to for show the pfsense 2.7 Command injection Vulnerability ( CVE-2023-42326)

Python3 implementation for exploiting Log4J over Jolokia

Proof-of-concept exploit for CVE-2022-0848 enabling remote code execution in part-db 0.5.11 via a simple bash script.

Java-based proof-of-concept exploit for CVE-2026-22812, a remote code execution vulnerability in OpenCode, demonstrating exploitation with a simple…

A simple toolkit to validate, exploit & gain an interactive shell via the react2Shell Next.js RCE.

Simple proof of concept repository for CVE-2025-34227 Nagios XI authenticated command injection in Configuration Wizard