
Harald
An in-memory minimal CPU for agnostic on-the-fly protocols creation

An in-memory minimal CPU for agnostic on-the-fly protocols creation
Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Docker projects to retain beacon source IPs using C2 relaying infra

Git Web Hook Tunnel for C2

Altenergy Power System Control Software set_timezone RCE Vulnerability (CVE-2023-28343)

Python Exploit for TP-Link TL-WR940N/TL-WR841N Command Injection Vulnerability

Windows SmartScreen Security Feature Bypass Vulnerability

Ruby-based proof-of-concept exploit for CVE-2023-2868 command injection in Barracuda ESG, delivering a reverse shell for targeted penetration testing.

Exploit for CVE-2009-3103, a Windows SMB remote code execution vulnerability, with a Python script and Metasploit handler for reverse shell.

CVE-2020-35729

Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run,…

Explorations of CVE-2024-49368 + Exploit Development

POC exploit for CVE-2025-33053 (external control of file execution path in URL file)

Mythic C2 agent targeting Linux and Windows hosts written in Rust

Set of python scripts which perform different ways of command execution via WMI protocol.

Automatically deploying Mythic C2 in Azure using Terraform

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free