
stratum-c2
Cloud-native C2 framework using cloud storage as dead-drop communication channel

Cloud-native C2 framework using cloud storage as dead-drop communication channel

CVE-2026-31431 — Local Privilege Escalation via Linux Kernel Page Cache Corruption

adb-driven KernelSU loader for stock Google Pixel: temporary kernel R/W via CVE-2026-43499 (GhostLock), then late-loads a signature-matched…

Exploit tool targeting CVE-2026-43499 with automated payload delivery and vulnerability verification for penetration testing engagements.

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Mogwai Java Management Extensions (JMX) Exploitation Toolkit

PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.

Sickle - Payload Development Kit

👻 CVE-2026-54121 - Best CertiGhost AD CS Multi-Exploit Framework | Advanced toolkit with rogue DC/LDAP servers, certificate abuse, PKINIT hash…

👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

Discuz! X5.0 Authentication Bypass Exploit Framework (CVE-2026-49952) - Critical vulnerability allowing unauthenticated database backup access via…

AdaptixC2 is a highly modular advanced redteam toolkit

💥Extension Tool para Auditoría y Explotación avanzada RCE/Source Leak/Dos (CVE-2025-55182/83/84) para entornos Next.js y React Server Components…

Extending of metasploit-framework

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive…

THorse is a RAT (Remote Administrator Trojan) Generator for Windows/Linux systems written in Python 3.