
CVE-2026-37748
Proof-of-concept exploit for CVE-2026-37748, an unrestricted file upload vulnerability in Visitor Management System 1.0 leading to remote code…

Proof-of-concept exploit for CVE-2026-37748, an unrestricted file upload vulnerability in Visitor Management System 1.0 leading to remote code…

Este repositorio contiene un exploit automatizado desarrollado con fines educativos y de investigación en ciberseguridad, dirigido a demostrar una…

C# Reflective loader for unmanaged binaries.

CVE-2025-33073

Tools and Techniques for Red Team / Penetration Testing

💥 Python Exploit for CVE-2025-49113 | Roundcube Webmail RCE via PHP Object Injection

Palo Alto - CVE-2026-0300 exploit

BOF POC of the DSCourier project / invoking WinGet via COM

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Create fake certs for binaries using windows binaries and the power of bat files

Penetration testing framework with AI-driven decision engine

Lateral Movement Using DCOM and DLL Hijacking

Feature-rich Post Exploitation Framework with Network Pivoting capabilities.

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

🐐 GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server

Fully modular persistence framework

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

🔒 Modern C2 Platform with Cloudflare Tunnel Integration | WinRM & SSH Remote Management | Real-time Terminal & Remote Desktop | Built with FastAPI &…