Home Exploits
Exploits

Exploits

Exploit Pack

!!! Exploits for Sale !!!

The exploits for CVE-2024-23842, CVE-2023-38941, and CVE-2025-6514 are for sale! These exploits are Metasploit compatible and fully weaponized. The exploit for linux/binutils mount/fstab misconfig is also avilable for sale, but is in the form of a bash script, and not a MSF module. No public exploit code is avilable. You can email me for a quote!

What is in this dump?

All of these exploits are originally coded by oxagast / Marshall Whittaker. Some of them were already known vulnerabilities that I took and re-evaluated then wrote an exploit for them that I thought was more functional or logical in some way. Some of these vulnerabiltiies are partial PoC exploits that will make something crash, but not actually get root. Some will straight drop you at a root shell. None of this code should ever under any circumstances be run in a production environment, or on a system that you do not have express permission to run a penetration test on.

Word of warning: Some of this code breaks things. Read it before running it.

TIP: You can access a plaintext version of each exploit by removing the slash, and appending .txt after the exploit’s file extension.
Example: https://oxasploits.com/exploits/cve-2024-23824-nginxui-api-injection.rb turns into https://oxasploits.com/exploits/cve-2024-23824-nginxui-api-injection.rb.txt

NEW: You can also access an updated RSS feed to grab exploits as I release them!

Email me at oxagast@oxasploits.com for any questions, comments, or if you have an idea for an interesting target you may want to collaborate on!