
TokenMan
Post-exploitation toolkit for Azure AD: fetch/search Microsoft Graph data, swap FOCI refresh tokens, and generate Azure CLI auth files from tokens.

Post-exploitation toolkit for Azure AD: fetch/search Microsoft Graph data, swap FOCI refresh tokens, and generate Azure CLI auth files from tokens.

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

VMWare Aria Operations for Networks (vRealize Network Insight) Static SSH key RCE (CVE-2023-34039)

Cloud dead-drop C2 framework — RSA-4096 + AES-256-GCM, 5 cloud providers, Rust-only agents, P2P mesh, persistence engine, credential harvesting

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

SQLC2 is a PowerShell script for deploying and managing a command and control system that uses SQL Server as both the control server and the agent.

Module-based AWS exploitation framework for red team testing and blue team analysis. Emulates attack patterns in the AWS control plane with unique UA…

CLI tool for the Horizon3.ai API

Hands-on CI/CD pipeline security workshop with Terraform lab, AWS exploitation, Kubernetes escape, and artifact backdooring exercises for offensive…

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Collects and analyzes AD and Azure AD authentication logs to detect lateral movement attacks using graph-based anomaly detection, visualizing…

Hands-on capture-the-flag lab for the OWASP Kubernetes Top 10 (2025). Exploit 11 real-world cluster weaknesses, capture flags, then apply fixes and…

AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.

AAD related enumeration in Nim

Determine privileges from cloud credentials via brute-force testing.

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability