
redsnarf
RedSnarf is a pen-testing / red-teaming tool for Windows environments

RedSnarf is a pen-testing / red-teaming tool for Windows environments

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Python-Based Pentesting CLI Tool

Single-file HTML cheat sheet for red teamers and pentesters with auto-injecting attacker/target variables, OS-aware reverse shell generator, and…

Pre-auth RCE scanner for Langflow < 1.8.0 — Route Injection + Vertex Injection → Code Execution (CVSS 9.8)

CVE-2025-55182 RCE vulnerability in Next.js/React RSC servers (exploit and scanner)

A swiss army knife for pentesting networks

Curated collection of offensive security tools and commands for Active Directory attacks, C2, privilege escalation, obfuscation, and web pentesting.

PAKURI-THON is a tool that supports pentesters with various pentesting tools and C4 server (command & control and chat & communication server).…

PoC tools for CVE-2026-58457: Unauthenticated OS Command Injection leading to remote root on Shenzhen Aitemi M300 Wi-Fi Repeater (MT02). Includes…

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

An all-in-one hacking tool to remotely take over Android devices.

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

Autonomous Hacking Agent for Red Team

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

An evil RAT (Remote Administration Tool) for macOS / OS X.

AI-driven penetration testing agent that connects to a Kali box, autonomously runs security tools, analyzes results, and iterates through…

Automatic SSTI detection tool with interactive interface