
GraphSpy
Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Remote operations commands implemented using Beacon Object Files

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

This is a proof-of-work for abusing git's clean filter against IDEs & Sublime.

Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.

⭐️The famous XWorm RAT, version 2.1. Educational purposes only

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

Comprehensive analysis and proof-of-concept for CVE-2025-6218 - WinRAR path traversal RCE vulnerability affecting versions 7.11 and earlier

Phantom Keylogger is an advanced, stealth-enabled keystroke and visual intelligence gathering system.

This is a proof-of-work for abusing "fsmonitor" against IDE.

Proof-of-concept exploit and technical analysis for a WinRAR path traversal vulnerability enabling code execution via crafted archives with binary…

A tool to transform Chromium browsers into a C2 Implant

PoC CVE-2025-49144

A tool to abuse Exchange services

macOS Initial Access Payload Generator

Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

This is a repository of resource about Malware techniques

A simple python reverse shell written just for fun.