This project demonstrates a simulated exploitation of the WinRAR vulnerability CVE-2023-38831 to execute a reverse shell. The purpose of this task was to showcase how attackers can weaponize compressed archive files to gain remote access to a target machine.
Root cuase & Proof of cause
A critical vulnerability in Microsoft SharePoint Server allows unauthenticated remote code execution via deserialization of untrusted data. Microsoft is aware of active exploitation; apply CVE mitigations immediately. Severity: Critical.
CitrixBleed 2 NetScaler honeypot logs
🎯 Vulnerability scanner for SharePoint servers affected by CVE-2025-53770. Detects unsafe deserialization using ToolPane.aspx with a crafted base64+gzip payload. 🛡️ Developed by Ahmed Tamer.
This script is a safe and simple tool that helps system users, students, and administrators check if their SCP (Secure Copy) client is vulnerable to CVE-2020-15778, a command injection vulnerability in OpenSSH SCP (versions ≤ 8.3p1).
Tools for detecting and assessing systems vulnerable to CVE-2025-53770 (CWE-502: Deserialization of Untrusted Data).
The vulnerability was found by Rich Mirch. More details on it here: https://cxsecurity.com/issue/WLB-2025070022
CVE-2025-53770 Mass Scanner
An activity to train analysis skills and reporting
Sharepoint ToolPane - CVE-2025-53770 & CVE-2025-53771
Just a quick script I cooked up to exploit CVE-2025-53770
Exploit & research for CVE‑2025‑53770 – a zero‑day remote code execution vulnerability in Microsoft SharePoint (on‑premises).
Honeypot for CVE-2025-53770 aka ToolShell
C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527
Do you really think SharePoint is safe?
Exploit for CVE-2024-12085 Infoleak
Detection rules for CVE-2025-53770
Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771