
SAMDump
Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. In C#, C++, Crystal, Python,…

Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. In C#, C++, Crystal, Python,…

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

More examples using the Impacket library designed for learning purposes.

Malicious PixelCode is a security research project that demonstrates a covert technique for encoding executable files into pixel data and storing…

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

Exploit code for CVE-2020-11579, an arbitrary file disclosure through the MySQL client in PHPKB

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

PoC RAT using the sneaky-creeper data exfiltration library

This script exploits a stored XSS vulnerability (CVE-2024-42009) in Roundcube Webmail version 1.6.7. It injects a malicious payload into the webmail…

Proof-of-concept Python script demonstrating iOS file exfiltration via malicious symlink in device backup restoration, targeting the…

A repository hosting write ups for the 0 days CVE-2021-25679, CVE-2021-25680, and CVE-2021-25681

Consul Template validated where a symlink pointed during template evaluation, but its later dependency fetch read the original path. Retargeting the…

Short program that demonstrates the vulnerability CVE-2024-33901 in KeePassXC version 2.7.7

The code for personally reproducing the corresponding vulnerability

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

[POC] Asynchronous reverse shell using the HTTP protocol.