
Invoke-sAMSpoofing
CVE-2021-42287/CVE-2021-42278 exploits in powershell

CVE-2021-42287/CVE-2021-42278 exploits in powershell

Exploit for CVE-2025-52136 enabling RCE on EMQX control panel via plugin upload, with MQTT-based command agent and SOCKS5 tunnel for out-of-band C2…

C# Reflective loader for unmanaged binaries.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Lateral Movement Using DCOM and DLL Hijacking

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Local & remote Windows DLL Proxying

Penetration testing framework with AI-driven decision engine

C&C Botnet written in Python with fabric

🐐 GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server

Code execution/injection technique using DLL PEB module structure manipulation

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

Windows process injection methods

🔒 Modern C2 Platform with Cloudflare Tunnel Integration | WinRM & SSH Remote Management | Real-time Terminal & Remote Desktop | Built with FastAPI &…

Proof-of-concept exploit for CVE-2024-31771 demonstrating arbitrary file write in TotalAV via symbolic link attack, enabling DLL planting and SYSTEM…

Worm written in python, abuses CVE-2020-7247

Proof-of-concept exploit for Windows local privilege escalation (CVE-2023-21746) abusing NTLM local authentication to gain SYSTEM privileges via SMB…

CVE-2022-25943