
CVE-2022-40684
A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

Automated Exploit Toolkit for CVE-2015-6095 and CVE-2016-0049

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

Metasploit module exploiting arbitrary file upload in Greenshift WordPress plugin (CVE-2025-3616) to achieve RCE via MIME spoofing, with…

A little tool to play with Windows security


An authentication bypass using an alternate path or channel in Fortinet product

Framework for Man-In-The-Middle attacks

cobaltstrike4.5版本破解、去除checksum8特征、bypass BeaconEye、修复错误路径泄漏stage、增加totp双因子验证、修复CVE-2022-39197等

Bypass de autenticación por certificado en la VPN Remote-Access de Check Point (IKEv1).

LDAP-based Active Directory privilege escalation framework supporting pass-the-hash, pass-the-ticket, and certificate authentication for automated…

CredSniper is a phishing framework written with the Python micro-framework Flask and Jinja2 templating which supports capturing 2FA tokens.

Kerberos relay framework for Windows environments enabling authentication relay, privilege escalation, and lateral movement via LDAP, SMB, HTTP, and…

Remote Kerberos Relay made easy! Advanced Kerberos Relay Framework

Serverless AITM Simulation Framework for Entra ID and M365

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

CVE-2026-8206: Kirki Customizer Framework - Unauthenticated Account Takeover (CVSS 9.8)

A minimal authenticated reverse shell framework for reaching hosts with outbound internet access.