
GoAT
🐐 GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server

🐐 GoAT (Golang Advanced Trojan) is a trojan that uses Twitter as a C&C server

Fully modular persistence framework

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely

Async BOF to automatically extract or renew Kerberos TGTs on a target system.

DCOM in memory and fileless lateral movement techniques through .Net deserilization

Deploy payloads to *Nix systems en masse

Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass

BOF POC of the DSCourier project / invoking WinGet via COM

BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

CVE-2021-42287/CVE-2021-42278 exploits in powershell

Windows process injection methods

Local Privilege Escalation in HP Support Assistant

Penetration testing framework with AI-driven decision engine

Proof-of-concept exploit demonstrating CVE-2020-25265 and CVE-2020-25266, using a crafted MP3 file to achieve arbitrary code execution via…

Worm written in python, abuses CVE-2020-7247

CVE-2025-33073