
wholeaked
a file-sharing tool that allows you to find the responsible person in case of a leakage

a file-sharing tool that allows you to find the responsible person in case of a leakage

Bash PoC script exploiting CVE-2019-6447 in ES File Explorer to list files, photos, videos, apps, and download files from vulnerable Android devices.

Dump cookies and credentials directly from Chrome/Edge process memory

Reverse Engineered based on CISA disclosure of new CVE

A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering

A technical case study and exploitation analysis of the Authentication Bypass vulnerability in TP-Link TL-WR840N firmware (CVE-2018-12633).

Exploiting Android Vulnerability in ES File Explorer

Critical vulnerability report detailing zero-day Remote Debugging Port exposure in Discord macOS client leading to account takeover, spyware, worm…

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).

Azure Post Exploitation Framework

:key: (THIS CODE IS OUTDATED FOR NEW CHROME VERSIONS) Decrypt chromium based browsers passwords, cookies, credit cards, history, bookmarks, autofill.…

Weaponizes Selenium to automate credential theft, cookie dumping, email exfiltration, and file extraction from Chromium browsers for red team…

Real Time Threat Monitoring Tool