
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

A basic emulation of an "RPC Backdoor"

Asynchronous RDP client for Python (headless)

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

WORK IN PROGRESS. RAT written in C++ using Win32 API

Remotely Enumerate sessions using undocumented Windows Station APIs

Threat intelligence and incident response case study on LockBit ransomware exploiting CVE-2023-4966 (Citrix Bleed).

PoC malware that uses exploit CVE-2021-36934 (improper ACLs on shadow copies) using a fileless red team method on Windows 10/11 with LOLBins,…

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

BOF POC of the DSCourier project / invoking WinGet via COM

Project that brings together several pentest tools

Excalibur is an Eternalblue exploit payload based "Powershell" for the Bashbunny project.

Incriminator is an OpenSource Project with educational purposes that allows you to incriminate other devices during a cybercrime.

An information security preparedness tool to do adversarial simulation.