
DoHC2
DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2) via DNS…

DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2) via DNS…

C# tool for exfiltrating files over DNS using XOR and asymmetric encryption, designed for red team engagements with restricted outbound connections.

Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

Simple DNS Rebinding Service

Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.

Exploit for CVE-2025-50505 in Clash Verge Rev, demonstrating local privilege escalation and remote code execution via unauthenticated API, including…

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.


Payload Generation Framework

A utility to safely generate malicious network traffic patterns and evaluate controls.

Kerberos CNAME abuse PoC

DNS rebinding attack tool exploiting multiple A records to bypass same-origin policy and exfiltrate data from internal network services via browser…

Exploit for CVE-2015-6357 Cisco FireSIGHT Management Center Certificate Validation Vulnerability


DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3

a unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations and…

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free

The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, subdomain…