
CVE-2025-33053-Proof-Of-Concept
CVE-2025-33053 Proof Of Concept (PoC)

CVE-2025-33053 Proof Of Concept (PoC)

Educational guide on CVE-2024-21413, the Outlook zero-click Moniker Link vulnerability, covering attack flow, NTLM credential capture, detection with…

If you've been grinding through HackTheBox machines, Mailing is one of those boxes that genuinely teaches you something. It's rated Easy, runs on…

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

SOC336 - Windows OLE Zero-Click RCE Exploitation Detected (CVE-2025-21298) Walkthrough

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

Tools and Techniques for Red Team / Penetration Testing

Payload Generation Framework

Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.

This repo covers some code execution and AV Evasion methods for Macros in Office documents

Remote operations commands implemented using Beacon Object Files

Open source C2 server created for stealth red team operations

CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability

🐐 GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server