
CVE-2026-39047
Printer exploitation framework for security testing via raw port 9100, featuring PCL payload delivery, DoS bombing, C2 QR codes, phishing QR codes,…

Printer exploitation framework for security testing via raw port 9100, featuring PCL payload delivery, DoS bombing, C2 QR codes, phishing QR codes,…

Educational trojan simulator for cybersecurity training, simulating phishing attacks with social engineering, system reconnaissance, anti-sandbox…

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

C# Tool to interact with MS Exchange based on MS docs

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

Curated collection of red team and pentest tools grouped by phase: payloads, AMSI bypasses, pivoting, persistence, privesc, credential harvesting,…

The Outlook HTML Leak Test Project

Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

A python keylogger that does more than any other keylogger - Key logger, Clicks logger and Screenshots

A collection of tools for dealing with TrickBot

DeadManSwitch in rust with several triggers (remote local and network)

Remote Administration Tool for Android devices

Windows Remote Post Breach Tool via Telegram

Loki.Rat is a fork of the Ares RAT, it integrates new modules, like recording , lockscreen , and locate options. Loki.Rat is a Python Remote Access…

Bella is a pure python post-exploitation data mining tool & remote administration tool for macOS. 🍎💻

Public disclosure for CVE-2025-56526 and CVE-2025-56527 — Stored XSS via unsanitized PDF content rendering and plaintext credential exposure in…