poc
Tracked open-source repos tagged poc, sorted by stars.
Related topics
Topics that frequently appear alongside poc on the same repo.
Recent risers
Repos created in the last 90 days, tagged poc.
- #1
CVE-2026-9830 Proof of Concept
★ 516
- #1★ 11,728+5Star change over the last 7 days
- #2
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
★ 9,042+8Star change over the last 7 days - #3★ 8,043+13Star change over the last 7 days
- #4
📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.
★ 8,036+9Star change over the last 7 days - #5
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
★ 7,480+3Star change over the last 7 days - #6
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)
★ 6,208+1Star change over the last 7 days - #7★ 5,708+0Star change over the last 7 days
- #8★ 5,408+1Star change over the last 7 days
- #9
Ladon大型内网渗透扫描器,PowerShell、Cobalt Strike插件、内存加载、无文件扫描。含端口扫描、服务识别、网络资产探测、密码审计、高危漏洞检测、漏洞利用、密码读取以及一键GetShell,支持批量A段/B段/C段以及跨网段扫描,支持URL、主机、域名列表扫描等。网络资产探测32种协议(ICMP\NBT\DNS\MAC\SMB\WMI\SSH\HTTP\HTTPS\Exchange\mssql\FTP\RDP)或方法快速获取目标网络存活主机IP、计算机名、工作组、共享资源、网卡地址、操作系统版本、网站、子域名、中间件、开放服务、路由器、交换机、数据库、打印机等,大量高危漏洞检测模块MS17010、Zimbra、Exchange
★ 5,322+2Star change over the last 7 days - #10
一个漏洞 PoC 知识库。A knowledge base for vulnerability PoCs(Proof of Concept), with 1k+ vulnerabilities.
★ 5,183+5Star change over the last 7 days - #11
A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak sensitive device-activity patterns. (WhatsApp / Signal)
★ 5,108+7Star change over the last 7 days - #12★ 4,376+4Star change over the last 7 days
- #13
Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 99.4% in KernelCTF images.
★ 2,458+1Star change over the last 7 days - #14★ 2,235+0Star change over the last 7 days
- #15
Stealthy Linux Kernel Rootkit for modern kernels (6x)
★ 1,746+8Star change over the last 7 days - #16
Search 82,000+ public CVE proof-of-concept exploits from GitHub, Nuclei, ExploitDB, Metasploit and Vulhub.
★ 1,378+8Star change over the last 7 days - #17★ 1,335-1Star change over the last 7 days
- #18★ 1,332+2Star change over the last 7 days
- #19★ 1,282+0Star change over the last 7 days
- #20
Automatically Collect POC or EXP from GitHub by CVE ID.
★ 1,198+2Star change over the last 7 days - #21★ 916+2Star change over the last 7 days
- #22
Hacking Charles Web Debugging Proxy
★ 839+0Star change over the last 7 days - #23
:: Prism X · Automated Enterprise Network Security Risk Detection and Vulnerability Scanning Tool / 棱镜 X · 自动化企业网络安全风险检测、漏洞扫描工具
★ 836+1Star change over the last 7 days - #24★ 833+1Star change over the last 7 days
- #25★ 830+2Star change over the last 7 days
- #26
Recent CVE PoC & reproduction scripts. Focused on high-severity vulnerabilities across Linux kernel, Windows, macOS and more.
★ 794+8Star change over the last 7 days - #27
scalpel是一款命令行漏洞扫描工具,支持深度参数注入,拥有一个强大的数据解析和变异算法,可以将常见的数据格式(json, xml, form等)解析为树结构,然后根据poc中的规则,对树进行变异,包括对叶子节点和树结构 的变异。变异完成之后,将树结构还原为原始的数据格式。
★ 736+1Star change over the last 7 days - #28★ 733+2Star change over the last 7 days
- #29
🔥🔒 Awesome MCP (Model Context Protocol) Security 🖥️
★ 732+0Star change over the last 7 days - #30
Wscan is a web security scanner that focuses on web security, dedicated to making web security accessible to everyone.
★ 713+2Star change over the last 7 days