
Adrenaline
C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

Flowise Windows RCE exploit for CVE-2026-58057. Bypasses environment variable validation via case-sensitive flaw. Uses node_options to inject…

A command-line utility for Windows written in C that creates and configures persistent Event Tracing for Windows (ETW) AutoLogger sessions.

POC exploit for CVE-2026-25895 FUXA Unauthenticated Path Traversal -> Arbitrary File Write -> RCE

New generation of wmiexec.py

Bash post exploitation toolkit

PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory domain…

This is a keylogger that collects all the data and e-mail it in a set time with system information which includes device S/N and hardware specs,…

Assist reverse tcp shells in post-exploration tasks

A chromium extension exploitation toolkit

An interactive CLI application for interacting with authenticated Jupyter instances.

Control a system remotely via telegram

Sinister is Windows/Linux Keylogger Generator which sends key-logs via email with other juicy target info

A tool to abuse Exchange services

Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources