
CVE-2021-40444
CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

OneDrive as a covert C2 transport for Cobalt Strike

Mythic C2 profile that tunnels agent traffic through Microsoft Teams channels using the Microsoft Graph API, with AES256 encryption, jitter, kill…

Ask the Web Account Manager (WAM) for Entra ID tokens

Windows research PoC in C that scans Microsoft Edge process memory for credential-related data, with a standalone executable and a BOF variant for C2…

Generates a malicious Microsoft Word document exploiting the MS-MSDT 'Follina' vulnerability to execute arbitrary commands or stage payloads via an…

Azure Outlook Command & Control (C2) - Remotely control a compromised Windows Device from your Outlook mailbox. Threat Emulation Tool for North…

Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

This docx exploit uses res files inside Microsoft .docx file to execute malicious files. This exploit is related to CVE-2021-40444

Proof-of-concept exploit for CVE-2022-41080 (OWASSRF) enabling remote code execution through Microsoft Exchange Outlook Web Access, bypassing…

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

Python script generating Microsoft Office documents that exploit CVE-2022-30190 for remote code execution via HTML payloads, supporting custom…

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

A New Microsoft Windows Remote Administrator Tool [RAT] with Python by Sir.4m1R.

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response