
custom-oscp-tooling
OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

Tools and Techniques for Red Team / Penetration Testing

PoC exploits for Magic Home Pro authentication bypass allowing device enumeration, JWT forging, and full IoT device takeover via vulnerable APIs.

Automated mass scanner for CVE-2026-3584, an unauthenticated RCE in WordPress Kali Forms. Executes a 4-phase pipeline: REST API enumeration, form…

Automated builds of obfuscated C# offensive tools for red teams, covering AD enumeration, credential access, lateral movement, and privilege…

Creation of multiple Malware tools consisting of evasion, enumeration and exploitation

Cobalt Strike BOF collection for attacking Azure AD during red team operations, covering authentication, enumeration, and post-exploitation vectors.

Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

High-fidelity scanner for React Server Components RCE vulnerabilities (CVE-2025-55182, CVE-2025-66478) with subdomain enumeration, IOC correlation,…

Reproduces CVE-2025-48734 in Apache Commons BeanUtils with a controlled lab environment demonstrating classpath enumeration and RCE escalation via…

Local privilege escalation exploit for CVE-2021-1732 targeting Windows 10 and Server versions, with PoC code and affected system enumeration.

Python-based exploit for CVE-2018-15473, enabling SSH user enumeration via OpenSSH username validation timing attack. Updated from Python 2 to 3 for…

Practical study notes and walkthroughs for PortSwigger Academy labs, covering web vulnerabilities, payloads, enumeration, and BSCP exam strategies.

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

Penetration testing framework with AI-driven decision engine

Exploit Jenkins instances via CVE-specific PoCs: RCE through Groovy scripts and deserialization, dump builds for cleartext secrets, password…

Offensive pentest toolkit combining OSINT, information gathering, SMB brute force, and Metasploit-compatible Meterpreter stagers for Windows/AD…

Collection of PowerShell-based tools for intranet penetration testing, including reconnaissance, lateral movement, privilege escalation, and…