
Thunderstorm
A collector and derivation engine. It maps your environment, evaluates effective permissions and trust, and writes a complete attack graph as a…

A collector and derivation engine. It maps your environment, evaluates effective permissions and trust, and writes a complete attack graph as a…

Exploit for Linux kernel CVE-2026-31431 causing page cache corruption via authencesn AEAD manipulation, targeting privilege escalation in containers…

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.

Proof-of-concept exploit for Kubernetes service-account token disclosure via hostPath mounts; includes vulnerable pod YAML and Python token-theft…

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

Cobalt Strike BOF collection for attacking Azure AD during red team operations, covering authentication, enumeration, and post-exploitation vectors.

A collection of scripts for assessing Microsoft Azure security

WorldFirst (Public) Docker API Exploit - My security researches involving Docker and Openshift

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…

A tool to extract the IdP cert from vCenter backups and log in as Administrator

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API…

DaemonSet с реализацией временной меры для митигации уязвимости Copy Fail (CVE-2026-31431)

A Terraform to deploy vulnerable app and a JDNIExploit to work with CVE-2021-44228

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.