
APEX
Azure Post Exploitation Framework
Tools for extracting sensitive data from compromised systems without detection.

Azure Post Exploitation Framework

Embed a payload inside a PNG file

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

Use to copy a file from an NTFS partitioned volume by reading the raw volume and parsing the NTFS structures.


USB Army Knife – the ultimate close access tool for penetration testers and red teamers.



CVE-2026-60004 — Gitea/Forgejo Diffpatch Git Hook RCE. Bare clone → post-index-change hook injection. CVSS 9.8 | CWE-94 | Gitea < 1.27.1

Unauthenticated arbitrary file read in Flowise (< 2.2.4) via path traversal in getFileFromStorage (storageUtils.ts). Caused by un-sanitized file path…


Exfiltrate data over screen interfaces

KeySweeper is a stealthy Arduino-based device, camouflaged as a functioning USB wall charger, that wirelessly and passively sniffs, decrypts, logs…

Password Manager Pro Exploit

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Xenotix Python Keylogger for Windows.

