


A cross-platform implant written in Nim

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

An SDN penetration testing toolkit

This aggressor script uses a beacon's note field to indicate the health status of a beacon.

A free and open source command-line shell and scripting language designed especially for security testing

Ansible-based attack platform for deploying and managing a standardized Linux penetration testing environment with automated tool installation,…

RedHerd is a collaborative and serverless framework for orchestrating a geographically distributed group of assets.

Plugin For BurpSuite (Pentester)

Async PICO Hub is a work-in-progress framework to extend Cobalt Strike with custom event monitoring and in-process Asynchronous BOFs

CLI tool for the Horizon3.ai API

WordPress wp2shell pre-auth RCE exploit kit (CVE-2026-63030 + CVE-2026-60137)

WordPress Core Unauthenticated RCE (CVE-2026-63030, CVE-2026-60137)

PoC tool for CVE-2026-44680 affecting MikroORM ≤7.0.13. Exploits JSON path injection to extract database contents via UNION-based attacks. Features…


A helper script for consolidating Aggressor and BOF repositories into a single CNA for Cobalt Strike.

Orchestration component of purpleteam