
Maestro
Abusing Azure services over C2

Abusing Azure services over C2

Socks5/4/4a Proxy support for Remote Desktop Protocol / Terminal Services / Citrix / XenApp / XenDesktop

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

Agent-server HTTP+TCP tunneling tool for exposing multiple internal services to external networks. Supports multi-level pivoting and SOCKS proxy…

Universal Dynamic Virtual Channel connector for Remote Desktop Services

Redirects EDR working folders using a Bind Filter (bindflt.sys) to bypass endpoint detection, corrupt EDR services, or replace with…

conduct lateral movement attack by leveraging unfiltered services display name to smuggle binaries as chunks into the target machine

Metasploit module that exploits Apache HTTP Server SSRF (CVE-2024-38472) on Windows to reach internal services and achieve remote code execution.

Impacket-based exploit for PrintNightmare (CVE-2021-1675/34527) enabling remote or local DLL execution against Windows print spooler services.

Tool for Active Directory Certificate Services enumeration and abuse

Get file less command execution for lateral movement.

Exploitation for CVE-2024-49019

In-depth technical analysis of Cisco ISE RCE vulnerabilities, including exploitation techniques, evasion methods, and remediation strategies for…

Exploitation de CVE-2022-26923

PowerShell enumeration script for discovering service-backed COM objects via CLSID/AppID correlation and activation testing.

📦 Make security testing of K8s, Docker, and Containerd easier.