
beef
The Browser Exploitation Framework Project

The Browser Exploitation Framework Project

Reusable offensive security skills and plugins for AI agents, covering reconnaissance, exploitation, C2, payload development, and reporting across…

During the exploitation phase of a pen test or ethical hacking engagement, you will ultimately need to try to cause code to run on target system…

Automated local privilege escalation exploit for Windows 10/11 targeting AFD.sys use-after-free to gain SYSTEM, with PPL bypass and EDR evasion for…

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

Ghostsplice repository: PoC for Cross-Channel Trust Fragmentation Attack

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

Spoof file icons and extensions in Windows

Educational trojan simulator for cybersecurity training, simulating phishing attacks with social engineering, system reconnaissance, anti-sandbox…

Remote operations commands implemented using Beacon Object Files

PoC for CVE-2025-55319

abusing windows toast notifications for fun and user manipulation

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Cisco Email Security Appliance: Email to zero-click RCE as root - Remote Code Execution/Memory Corruption/ROP-chain

CVE-2025-8088 exploitation chain + Quasar C2 multi-stage payload delivery

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…