
peeko
peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Python and Powershell internal penetration testing framework

[WIP] Ulterius™ server where all the magic happens 🚀 :feelsgood:

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

Agent-server HTTP+TCP tunneling tool for exposing multiple internal services to external networks. Supports multi-level pivoting and SOCKS proxy…

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal restrictions …

Root-Level RCE via OS Command Injection in Ivanti Sentry

This repository contains a professional bug bounty report demonstrating the successful exploitation of a Blind SSRF vulnerability that reached an…