
XSS2Shell
Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

Cobalt Strike BOFs for in-memory post-exploitation: Active Directory enumeration, clipboard capture, WiFi credential dump, port scan, and registry…

Simple BOF to read the protection level of a process

PowerShell rebuilt in C# for Red Teaming purposes

Hooked browser communication over MQTT

Web-based red team activity logging, reporting, and situational awareness tool with Cobalt Strike and BloodHound integration.

Native Nim WinRM shell with NTLM, Kerberos, file transfer, in-memory helpers, and AD/OPSEC reporting

Automated CVE-2020-5902 detection and exploitation tool for F5 BIG-IP TMUI, supporting single/batch vulnerability checks, file read/write, user…

Python-based exploit for CVE-2022-26134, an OGNL injection vulnerability in Confluence Server and Data Center. Supports single URL check and batch…

Python script to detect CVE-2017-10271 (Weblogic wls-wsat deserialization RCE) using out-of-band DNS log verification via ceye.io. Supports Windows…

Comprehensive CobaltStrike post-exploitation plugin integrating modules for privilege escalation, lateral movement, credential dumping, persistence,…

Exploit for CVE-2026-58057 targeting Flowise Windows RCE via case-sensitive environment variable validation bypass. Supports reverse shell,…

Blind SQL injection tool to extract login credentials from Phase botnet command-and-control servers via automated injection payloads.

Cross-platform proof-of-concept botnet that abuses Google Services (Forms, Spreadsheets, Data API) for encrypted C2 communication, enabling remote…

CLI tool to confirm if an IP:port hosts an Empire C2 server, with support for masscan output parsing and batch scanning from file or stdin.

complex webshell manager, quasi-http botnet.

Work in Progress. RAT written in C++ using wxWidgets

Modular botnet command & control monitor with IRC/HTTP protocol support, SOCKS proxy anonymization, XMPP sensor coordination, and RESTful API for…