
SocialFish
Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

Multi-purpose WiFi penetration testing toolkit for M5Stack devices. Performs network scanning, evil-twin attacks, deauthentication, captive portal…

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

👻 A LAN dropbox chatbot controllable via Telegram

ShadowPhish is an advanced APT awareness toolkit designed to simulate real-world phishing, malware delivery, deepfakes, smishing/vishing, and command…

A proof of concept crypto virus to spread user awareness about attacks and implications of ransomwares. Phirautee is written purely using PowerShell…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

Autonomous security operations agent for threat intelligence, vulnerability research, IOC analysis, and red teaming. Supports dual-mode operations…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

PoC CVE-2025-49144

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

This repository contains a full blue-team malware analysis of a real malicious DOCX exploiting CVE-2017-0199. The lab includes sandbox execution,…



A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

CVE-2025-8088 exploitation chain + Quasar C2 multi-stage payload delivery

Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.