
chromium-exploit-dev
Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run,…

Set of python scripts which perform different ways of command execution via WMI protocol.

Mythic C2 agent targeting Linux and Windows hosts written in Rust

Automatically deploying Mythic C2 in Azure using Terraform

Git Web Hook Tunnel for C2

Ruby-based proof-of-concept exploit for CVE-2023-2868 command injection in Barracuda ESG, delivering a reverse shell for targeted penetration testing.

Docker projects to retain beacon source IPs using C2 relaying infra

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2020-35729

Altenergy Power System Control Software set_timezone RCE Vulnerability (CVE-2023-28343)

POC exploit for CVE-2025-33053 (external control of file execution path in URL file)

Python Exploit for TP-Link TL-WR940N/TL-WR841N Command Injection Vulnerability

Exploit for CVE-2009-3103, a Windows SMB remote code execution vulnerability, with a Python script and Metasploit handler for reverse shell.

An in-memory minimal CPU for agnostic on-the-fly protocols creation

Explorations of CVE-2024-49368 + Exploit Development

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free