
Vegile
This tool will setting up your backdoor/rootkits when backdoor already setup it will be hidden your spesisifc process,unlimited your session in…

This tool will setting up your backdoor/rootkits when backdoor already setup it will be hidden your spesisifc process,unlimited your session in…

DejaVU - Open Source Deception Framework

Exploit for CVE-2025-50505 in Clash Verge Rev, demonstrating local privilege escalation and remote code execution via unauthenticated API, including…

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

C# port of WMImplant which uses either CIM or WMI to query remote systems

A compact guide to network pivoting for penetration testings / CTF challenges.

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

Proof of concept exploit for Ivanti EPM CVE-2024-13159 and others

StandIn is a small .NET35/45 AD post-exploitation toolkit

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Six Degrees of Domain Admin

Remote administration service which uses twitter as a command and control server

Network Pivoting Toolkit

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Scripts to test and exploit the Zerologon vulnerability (CVE-2020-1472) in Active Directory, enabling password reset and hash dumping of domain…

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

An automated SMB relay exploitation script.

pyCobaltHound is an Aggressor script extension for Cobalt Strike which aims to provide a deep integration between Cobalt Strike and Bloodhound.