
CVE-2026-41091-PoC-Exploit
CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM 🔥 via Cloud Files API + NTFS junction…

CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM 🔥 via Cloud Files API + NTFS junction…

Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and…

OneDrive as a covert C2 transport for Cobalt Strike

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Serverless Framework MCP Server (CVE-2025-69256) Base Score: 9.4/10 → CTT Enhanced Score: 9.9/10 A critical command injection vulnerability in…

IngressNightmare POC. world first non-blind remote execution exploitation with multi-advanced exploitation methods. allow on disk exploitation.…

Collection of tools to use with Azure Applications

Exploit for CVE-2022-22947 with memory shell injection capabilities, enabling remote code execution testing on vulnerable Spring Cloud Gateway…

Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus