
ARES
Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

Python exploit for CVE-2007-2447 targeting Samba smbd 3.0.20-Debian with reverse shell payload delivery via Netcat listener.

PoC for generating bthprops.cpl module designed to be loaded by Fsquirt.exe LOLBin

Unauthenticated SQL Injection to Remote Code Execution in FreePBX — CVE-2025-57819

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration

A New Microsoft Windows Remote Administrator Tool [RAT] with Python by Sir.4m1R.

Authenticated remote code execution exploit for Webmin < 1.997 via the Software Package Updates module. Injects arbitrary commands as root through an…

generate CobaltStrike's cross-platform payload

Windows keylogging module for the Sliver C2 implant framework, using Raw Input to capture keystrokes and expose start, stop, and retrieval commands…

CVE-2023-33538 - TP-Link Command Injection Ruby module for Metasploit Framework

IP obfuscator made to make a malicious ip a bit cuter

Metasploit module that exploits Apache HTTP Server SSRF (CVE-2024-38472) on Windows to reach internal services and achieve remote code execution.

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…

A native backdoor module for Microsoft IIS (Internet Information Services)

POC for CVE-2025-24054

Chromebackdoor is a PoC of pentest tool, this tool use a MITB technique for generate a windows executable ".exe" after launch run a malicious…

PowerShell to Slack C2

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system