
nccfsas
Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team.

Information released publicly by NCC Group's Full Spectrum Attack Simulation (FSAS) team.

Web-based red team activity logging, reporting, and situational awareness tool with Cobalt Strike and BloodHound integration.

Perform advanced MiTM attacks on websites with ease 💉

complex webshell manager, quasi-http botnet.

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

Botnet command & control monitor

XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.

Abusing Azure services over C2



C# port of WMImplant which uses either CIM or WMI to query remote systems

Offensive tool for exploiting management applications (SolarWinds Orion, McAfee ePO) via non-technical vulnerabilities. Enables client enumeration,…

CVE-2023-33246 RocketMQ RCE Detect By Version and Exploit

JumpServer 堡垒机未授权综合漏洞利用, Exploit for CVE-2023-42442 / CVE-2023-42820 / RCE 2021

Simple BOF to read the protection level of a process

F5 BIG-IP RCE CVE-2020-5902 automatic check tool

Yet Another PHP Shell - The most complete PHP reverse shell

Script lets you gather malicious software and c&c servers from open source platforms like Malshare, Malcode, Google, Cymon - vxvault, cybercrime…