EXP, POC of various CMS, platforms, systems, software vulnerabilities, the project will be constantly updated
- Fastjson RCE https://github.com/dbgee/fastjson-rce
- Log4j RCE https://github.com/dbgee/log4j2_rce
- redis RCE https://github.com/Ridter/redis-rce
- Thinkphp RCE https://github.com/helloexp/0day
- Windows RCE https://github.com/smgorelik/Windows-RCE-exploits
- shiro deserialization https://github.com/helloexp/0day/tree/master/shiro
- VPS2SUSE https://github.com/U2FsdGVkX1/vps2suse
- A few months ago, I participated in an AWD offensive and defensive game and found that collecting POC in advance is very good way, and I can learn a lot in the process of collecting these
payloads
. - Subsequent HW, CTF, or daily infiltration activities can quickly locate and exploit.
Any issues about this project you can feedback to me,or open pull request directly.
- Fork This project your github accout
- Clone repo to your local PC
- Modify code at your local pc(Add poc、exp Or fix bug)
- push code to your account
- PR (open pull requests) to this project
- Contributions,
readme update、readme translate、bug fix、function improvement、new features,etc. - star、fork to support this project is also grateful
- Contributions,
If you need to show your excellent work in this project,please add prject address here README-en.md and open pull request