
ActiveReign
A Network Enumeration and Attack Toolset for Windows Active Directory Environments.

A Network Enumeration and Attack Toolset for Windows Active Directory Environments.

Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading a C# port of…

GitPwnd is a network penetration tool that lets you use a git repo for command and control of compromised machines

Collection of tools to use with Azure Applications

This is a concept poc of command and control server implemented over blockchain

Orwell is a RAT and Botnet designed as a trio of programs.

CVE-2025-33053 Proof Of Concept (PoC)

An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed and what…

Exp of cve-2019-12272

A collection of random small Aggressor snippets that don't warrant their own repo

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

This repo exists as a quick and dirty arsenal of methods and scripts to subvert .NET SSL/TLS certificate validation in PowerShell and press on with…

Strutsy - Mass exploitation of Apache Struts (CVE-2017-5638) vulnerability

Authenticated command injection exploit for Tenda HG9 routers. Provides interactive remote shell access via Python script for penetration testing and…

SignHere is implementation of CVE-2017-11882. SignHere is builder of malicious rtf document and VBScript payloads.

Proof Of Concept RCE exploit for critical vulnerability in PHP <8.2.15 (Windows), allowing attackers to execute arbitrary commands.

This repository contains a PoC exploit for CVE-2025-69212.

Server to host/activate Follina payloads & generator of malicious Word documents exploiting the MS-MSDT protocol. (CVE-2022-30190)