
CVE-2019-12949
CVE-2019-12949

CVE-2019-12949

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

CVE-2025-33053 Proof Of Concept (PoC)

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Powershell reverse shell using HTTP/S protocol with AMSI bypass and Proxy Aware

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina

Tools for attacking Computer Use Agents

This is a PoC/Exploit for the CVE-2024-47875 PhpSpreadsheet XSS Vuln

Remote Administration Tool for Android devices

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Multi-purpose WiFi penetration testing toolkit for M5Stack devices. Performs network scanning, evil-twin attacks, deauthentication, captive portal…