
TheFatRat
Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This…

Thefatrat a massive exploiting tool : Easy tool to generate backdoor and easy tool to post exploitation attack like browser attack and etc . This…

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with…

Guardian is a production-ready AI-powered penetration testing automation CLI tool that leverages Google Gemini and LangChain to orchestrate…

An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE…

Kubernetes-native security scanning orchestrator that automates continuous vulnerability detection by integrating multiple open-source scanners into…

Modular security scanning orchestrator that combines specialized agents for vulnerability detection, reconnaissance, and fingerprinting across…

A BOF that runs unmanaged PEs inline

Offensive security platform that automates attack surface discovery and vulnerability management

Modular penetration testing platform that enables you to write, test, and execute exploit code.

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Cobalt Strike Aggressor Script that Performs System/AV/EDR Recon

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…