
neurax
A framework for constructing self-spreading binaries

A framework for constructing self-spreading binaries

C# tool to dump all cookies from Chrome/Edge browsers, including httpOnly and secure flags, for session hijacking and post-exploitation credential…

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems.

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

Just a repo of random Python scripts to get pentesters started with the Python language on engagements.

This repository presents a proof-of-concept of CVE-2023-7028

Reverse engineering analysis of DarkTortilla RAT, a sophisticated malware that steals credit card data, decrypts browser passwords, and exfiltrates…

a unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations and…

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

SharpSploit is a .NET post-exploitation library written in C#

A script to test credentials against Active Directory Federation Services (ADFS), allowing password spraying or bruteforce attacks.

A Network Enumeration and Attack Toolset for Windows Active Directory Environments.

Automates NTLM relay exploitation using ntlmrelayx.py for SMB share enumeration, shell execution, secrets dumping, and MSSQL command execution via…

C# tool for automated password spraying attacks against Active Directory users via LDAP, with configurable delays and password lists, designed for…


Proof-of-concept exploit for CVE-2025-60787, an OS command injection in motionEye v0.43.1b4, enabling remote code execution via crafted…