
TornadoRevC2
Modular post-exploitation framework managing reverse-shell sessions over TCP/TLS/mTLS with plugins for enumeration, in-memory execution, SOCKS5…

Modular post-exploitation framework managing reverse-shell sessions over TCP/TLS/mTLS with plugins for enumeration, in-memory execution, SOCKS5…

Cross-platform syscall-powered implant & C2 — direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No winapi layer.

PoC Exploit for the NTLM reflection SMB flaw.

Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Python implementation of OpenPsPipeJack

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

Ask a TGS on behalf of another user without password

Various tips & tricks

HTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root

This cheatsheet maps common impacket workflows to their modern alternatives

Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

Firecat is a penetration testing tool that allows you to punch reverse TCP tunnels out of a compromised network.

AdaptixC2 is a highly modular advanced redteam toolkit

Um estudo de caso do CVE-2024-21413. Usado como parâmetro a sala do TryHackMe Moniker Link (CVE-2024-21413). Feito edições com claude code no exploit.

MeshDeck port for Arch Linux ARM - Wilson