
Detections-CVE-2026-23918
Detection rules for CVE-2026-23918 Apache http2 RCE - Credit: stringa.ai, isec.pl

Detection rules for CVE-2026-23918 Apache http2 RCE - Credit: stringa.ai, isec.pl


Security research on Erlang/OTP SSH CVE-2025-32433.

🦫 | GoRedOps is a repository dedicated to gathering and sharing advanced techniques and offensive malware for Red Team, with a specific focus on…

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

A tool which bypasses AMSI (AntiMalware Scan Interface) and PowerShell CLM (Constrained Language Mode) and gives you a FullLanguage PowerShell…

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

.NET/PowerShell/VBA Offensive Security Obfuscator

Shellcode injection technique. Given as C++ header, standalone Rust program or library.

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

RefleXXion is a utility designed to aid in bypassing user-mode hooks utilised by AV/EPP/EDR etc. In order to bypass the user-mode hooks, it first…

Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-software in…

Spray365 makes spraying Microsoft accounts (Office 365 / Azure AD) easy through its customizable two-step password spraying approach. The built-in…

A simple remote tool in C#.

Gorsair gives root access on remote docker containers that expose their APIs

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.


Automated Tool That Generates The Perfect Meterpreter Powershell Payload