
slot2
UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

Red Team K8S Adversary Emulation Based on kubectl

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

Cobalt Strike HTTPS beaconing over Microsoft Graph API

Nebula is a cloud C2 Framework, which at the moment offers reconnaissance, enumeration, exploitation, post exploitation on AWS, but still working to…

Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for North…

Abusing Azure services over C2

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus

Serverless AITM Simulation Framework for Entra ID and M365

Azure Function that validates and relays Cobalt Strike beacon traffic using malleable C2 profiles, redirecting invalid requests to a decoy site and…

Just a repo of random Python scripts to get pentesters started with the Python language on engagements.

The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.

Python script for automating the creation of serverless cloud redirectors from Cobalt Strike malleable C2 profiles

Security gateway for AI agents - credential-isolated API proxying and policy-gated remote execution (conclaves). Reduce the blast radius!

Collection of tools to use with Azure Applications