
Grassmarlin-CVE-2026-6807-XXE-POC
Reverse Engineered based on CISA disclosure of new CVE

Reverse Engineered based on CISA disclosure of new CVE

:key: (THIS CODE IS OUTDATED FOR NEW CHROME VERSIONS) Decrypt chromium based browsers passwords, cookies, credit cards, history, bookmarks, autofill.…

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

Python based backdoor that uses Gmail to exfiltrate data through attachment. This RAT will help during red team engagements to backdoor any Windows…

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.

Exploitation Framework for ATtiny85 Based HID Attacks

Web Based Command Control Framework (C2) #C2 #PostExploitation #CommandControl #RedTeam #C2Framework #PHPC2 #.NETMalware #Malware #PHPMalware #CnC…

C# Tool to interact with MS Exchange based on MS docs

This is a plugin for the c# R.A.T server providing extension to android based phone systems

POC shows how to leak postgresql stuff cause hugefile sub-system. Based on https://x.com/spendergrsec/status/1993794163880718700?s=20

A python based tool for exploiting and managing Android devices via ADB

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

Dump cookies and credentials directly from Chrome/Edge process memory

Weaponizes Selenium to automate credential theft, cookie dumping, email exfiltration, and file extraction from Chromium browsers for red team…

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version…

Blue Pigeon is a Bluetooth-based data exfiltration and proxy tool to enable communication between a remote Command and Control (C2) server and a…