
exfilkit
Data exfiltration utility for testing detection capabilities

Data exfiltration utility for testing detection capabilities

Cobalt Strike BOF that creates an LSASS minidump in memory and exfiltrates it over the C2 callback for offline credential parsing with Mimikatz or…

Easy peasy file uploads

Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.

A Proof-of-Concept using Cache Smuggling + Exif data to passively download a second stage payload

Monitor large transactions on Polymarket and Kalshi prediction markets with anomaly detection

Exploit for Adobe Reader DC out-of-bounds read vulnerability (CVE-2021-45067) that leaks sensitive information from the sandboxed process via…

Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

Forensic toolkit and agent skills for investigating Rails Active Storage/libvips CVE-2026-66066: detects crafted blob indicators, exposure windows,…

WORK IN PROGRESS. RAT written in C++ using Win32 API

Curated guide to zero-data-retention configurations for LLM APIs. Covers provider-specific ZDR endpoints, threat models, compliance mappings, and…

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

Automated exploit for CVE-2026-27944 in Nginx UI: downloads and decrypts backups, extracts secrets, and creates rogue admin accounts for full…

Android Data Stealing Vulnerability

CosmicSting: critical unauthenticated XXE vulnerability in Adobe Commerce and Magento (CVE-2024-34102)

Proof-of-concept checker for CVE-2025-10951, an unauthenticated path traversal in ml-logger, validating arbitrary file read via /glob and /stream…

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

Browser PoC demonstrating CVE-2026-2828, a WebGPU timing side-channel that leaks cross-origin iframe pixel values by measuring GPU timestamp-query…