
Atlas
Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

Cross-platform network execution toolkit (SMB/Kerberos/WMI/LDAP/DCSync) built on TrustedSec's Titanis - NetExec-style workflow in C#

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

SOC336 - Windows OLE Zero-Click RCE Exploitation Detected (CVE-2025-21298) Walkthrough

Multiplayer pivoting solution

This tool demonstrates the application of fundamental physics discoveries to cybersecurity.

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Trying to tame the three-headed dog.

Exploit code for CVE-2021-1675, a Windows Print Spooler remote code execution vulnerability, demonstrating the attack and providing a…

Tool for extracting Windows credentials (passwords, hashes, Kerberos tickets) from memory and performing pass-the-hash, pass-the-ticket, and golden…

Curated wordlists for brute-forcing SSH private key filenames, aiding penetration testers in locating keys via LFI or enumeration during lateral…

Exploit for CVE-2021-36934

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

Vulnerable Samba 3.0.24 environment for reproducing CVE-2007-2447 command execution, intended for exploit testing and security research.

mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

This tool can be used during internal penetration testing to dump Windows credentials from an already-compromised host. It allows one to dump SYSTEM,…

CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability