
SpawnWith
Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

Cobalt Strike BOF that spawns a process using another user's token and injects Beacon shellcode, enabling post-exploitation and lateral movement via…

Automated 802.1x Bypass

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Proof of conept to exploit vulnerable proxycommand configurations on ssh clients (CVE-2023-51385)

A script to automate keystrokes through a graphical desktop program.

A Windows Remote Administration Tool in Visual Basic with UNC paths

CVE-2022-30190 | MS-MSDT Follina One Click

Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

CVE-2026-6508 LiderAhenk Merkezi Yönetim Sistemi mimarisinde, uç birimler (agents) arası tüm istemcilerin birbirleri üzerinde 'root' yetkisiyle kod…

Penetration testing framework with AI-driven decision engine

Worm written in python, abuses CVE-2020-7247

CVE-2025-33073

CVE-2018-9276 PRTG < 18.2.39 Reverse Shell (Python3 support)

A tiny Reverse Sock5 Proxy written in C :V

Empire is a PowerShell and Python post-exploitation agent.

Feature-rich Post Exploitation Framework with Network Pivoting capabilities.

CVE-2026-23500 - OS Command Injection (RCE) via MAIN_ODT_AS_PDF configuration in Dolibarr