
GC2-sheet
GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

CTT-enhanced version of the Microsoft Exchange Server SSRF to RCE exploit (ProxyShell/ProxyLogon), another CVSS 10.0 critical vulnerability that…

CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

Cobalt Strike HTTPS beaconing over Microsoft Graph API

A native backdoor module for Microsoft IIS (Internet Information Services)

Python logger with multiple features.

Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for North…

A tool for security professionals to access and interact with remote Microsoft Windows based systems.

Multiplatform HTTP reverse shell providing a shell-like interface over HTTP, with file upload/download, command history, auto-reconnection, and sudo…

CobaltWhispers is an aggressor script that utilizes a collection of Beacon Object Files (BOF) for Cobalt Strike to perform process injection,…


A New Microsoft Windows Remote Administrator Tool [RAT] with Python by Sir.4m1R.

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.

Proof of Concept of CVE-2022-30190

Exploit Microsoft Zero-Day Vulnerability Follina (CVE-2022-30190)