
CDK
📦 Make security testing of K8s, Docker, and Containerd easier.

📦 Make security testing of K8s, Docker, and Containerd easier.

Vendor-neutral cloud security testing guide with structured phases for enumeration, privilege escalation, lateral movement, and post-exploitation…

Exploit for CVE-2025-54914 in Azure Networking, creating malicious routes with evasion, persistence, multi-target scanning, and reporting for…

Authenticated arbitrary file read exploit for the File Away WordPress plugin (CVE-2025-2539). Includes PoC, attack flow, detection signatures, and…

Flowise Windows RCE exploit for CVE-2026-58057. Bypasses environment variable validation via case-sensitive flaw. Uses node_options to inject…

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit


Adversary Emulation Framework

A New Microsoft Windows Remote Administrator Tool [RAT] with Python by Sir.4m1R.

"Reverse engineering analysis of a fileless Remcos RAT variant that injects into svchost.exe via Native API calls. Covers obfuscated payload…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

Modular post-exploitation framework managing reverse-shell sessions over TCP/TLS/mTLS with plugins for enumeration, in-memory execution, SOCKS5…

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated…

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

Automated Persistence and Lateral Movement using GCP Patch Management

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…