
Invoke-HiveNightmare
PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version…

PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version…

Xenotix Python Keylogger for Windows.

Generate Gmail Emailing Keyloggers to Windows.

Injects JavaScript keylogger into WebView2 pages to capture keystrokes and exfiltrate cookies from Microsoft authentication sessions via HTTP GET…

CVE-2025-66723: inMusic Brands Engine DJ >=3.0.0 through <4.3.4 exposes local and network files to external parties

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)

👁️ (s)AINT is a Spyware Generator for Windows systems written in Java. [Discontinued]

Win32 keylogger that supports all (non-ime using) languages correctly

Cromos is a tool for downloading legitimate extensions of the Chrome Web Store and inject codes in the background of the application.

CVE-2021-26837 - SQL Injection in the SearchTextbox parameter of HelpSystems/Fortra DeliverNow. Payloads, annotated requests, and evidence. Fixed in…

Youtube as C2 channel - Control Windows systems uploading QR videos to Youtube

Python based backdoor that uses Gmail to exfiltrate data through attachment. This RAT will help during red team engagements to backdoor any Windows…

This is a keylogger that collects all the data and e-mail it in a set time with system information which includes device S/N and hardware specs,…

Transfer files to and from a Windows host via ICMP in restricted network environments.

Havoc C2 plugin that creates a hidden Windows desktop, streams it to a browser viewer, and injects mouse/keyboard input for covert remote control.


This tool extracts and displays data from the Recall feature in Windows 11, providing an easy way to access information about your PC's activity…

A python script to dump files and folders remotely from a Windows SMB share.