


DEPRECATED - MozDef: Mozilla Enterprise Defense Platform

一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webshell,命令执行或者上传…

Kvasir: Penetration Test Data Management

A collection of scripts which may come in handy during your freedom fighting activities.

Data from a BRAWL Automated Adversary Emulation Exercise

This project is 'bridge' between the sleep and python language. It allows the control of a Cobalt Strike teamserver through python without the need…

AI 驱动的 SOC 仿真平台

A honeypot for the Log4Shell vulnerability (CVE-2021-44228).


AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.


macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR

An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed and what…

Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

Post-Exploitation EVTX Analyzer for BloodHound Mapping

** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the…

CVE-2022-31814 Exploitation Toolkit.