
APT-Backpack
cve-2019-11510, cve-2019-19781, cve-2020-5902, cve-2021-1497, cve-2021-20090, cve-2021-22006, cve-2021-22205, cve-2021-26084,…

cve-2019-11510, cve-2019-19781, cve-2020-5902, cve-2021-1497, cve-2021-20090, cve-2021-22006, cve-2021-22205, cve-2021-26084,…


Cobalt Strike Aggressor script that weaponizes LNK and Library-MS files to trigger SMB NTLMv2 hash disclosure, including CVE-2025-24054 bypass, for…

trojan CVE-2024-28085 CVE 28085

Project that brings together several pentest tools

Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.

POC exploit for CVE-2025-33053 (external control of file execution path in URL file)

PoC and technical write-up for CVE-2025-43920, a remote command injection in GNU Mailman 2.1.39's external archiver allowing unauthenticated code…

Detailed proof-of-concept and technical analysis for CVE-2026-2441, a Chrome CSS use-after-free vulnerability enabling sandboxed renderer RCE via…

xll windows reverse shell

Reusable offensive security skills and plugins for AI agents, covering reconnaissance, exploitation, C2, payload development, and reporting across…

DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3

Infrastructure Automation

Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.

A simple python reverse shell written just for fun.

Framework for Man-In-The-Middle attacks

👻 A LAN dropbox chatbot controllable via Telegram

Python logger with multiple features.