
CVE-2026-65400
Proof-of-concept exploit for CVE-2026-65400 enabling authenticated file read/write, reverse shells, and persistence on macOS via Apple ScreenSharing.

Proof-of-concept exploit for CVE-2026-65400 enabling authenticated file read/write, reverse shells, and persistence on macOS via Apple ScreenSharing.

The TrustedSec Attack Platform is a reliable method for droppers on an infrastructure in order to ensure established connections to an organization.

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

C++

Powershell Persistence Locator

WORK IN PROGRESS. RAT written in C++ using Win32 API

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse

A simple C2 Framework written in modern C++

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

Generate Payloads and Control Remote Machines. [Discontinued]

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…

An information security preparedness tool to do adversarial simulation.

An open-source post-exploitation framework for students, researchers and developers.

Assist reverse tcp shells in post-exploration tasks

Python-based keylogger and surveillance tool with Telegram C2, capturing keystrokes, screenshots, webcam, audio, clipboard, and system activity for…