
linux-root-kit
End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

"Reverse engineering analysis of Salat Stealer, a Go-based info-stealer that uses a Telegram proxy decoy, C2 communication, and encrypted memory…

Copy Fail - CVE-2026-31431 - Hardened C implementation for redteam and authorized penetration testing operations. ⚠️ Legal Notice: This tool is…

🛡️ CVE-2026-64638 - WordPress Security Assessment Suite (CVSS 8.9) | WordPress 4.7.0-7.0.2 pentest toolkit. Includes vulnerability assessment &…

Detailed proof-of-concept and technical analysis for CVE-2026-2441, a Chrome CSS use-after-free vulnerability enabling sandboxed renderer RCE via…

My experiments in weaponizing Nim (https://nim-lang.org/)

Rust Weaponization for Red Team Engagements.

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents…

Patch Binaries via MITM: BackdoorFactory + mitmProxy.

Hunts out CobaltStrike beacons and logs operator command output

A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

poc for CVE-2025-24252 & CVE-2025-24132

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

exploit for CVE-2026-42945