
metasploit-framework
Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

ENDGAME C2 FRAMEWORK — AI-powered command and control for professional red team operations

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

Penetration testing framework with AI-driven decision engine

Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.

My Notes about Penetration Testing

Automating situational awareness for cloud penetration tests.

📦 Make security testing of K8s, Docker, and Containerd easier.

Tools and Techniques for Red Team / Penetration Testing


R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Red Teaming & Pentesting checklists for various engagements


CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

A compact guide to network pivoting for penetration testings / CTF challenges.

A C# Command & Control framework