
NetExec
Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

Proof-of-concept exploit for CVE-2025-66224 demonstrating remote code execution in OrangeHRM via command injection in the sendmail_path parameter,…

Automated Mass Exploiter

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

CVE-2021-41773 | Apache HTTP Server 2.4.49 is vulnerable to Path Traversal and Remote Code execution attacks

Full Metasploit exploitation walkthrough against Metasploitable2 — vsftpd backdoor, Samba CVE-2007-2447, UnrealIRCd backdoor, Netcat exfiltration,…

D-RAT [VB.NET]+[MySQL]+[PHP]

Database authenticated code execution

Python exploit and detection script for CVE-2024-27348, a remote code execution vulnerability in Apache HugeGraph Server via the Gremlin traversal…

OWASP Mth3l3m3nt Framework is a penetration testing aiding tool and exploitation framework. It fosters a principle of attack the web using the web as…

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Offensive MSSQL toolkit written in Python, based off SQLRecon

CVE-2021-27928 MariaDB/MySQL-'wsrep provider' 命令注入漏洞