
POC-of-CVE-2022-36271
This is working POC of CVE-2022-36271

This is working POC of CVE-2022-36271

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Authenticated arbitrary file read exploit for the File Away WordPress plugin (CVE-2025-2539). Includes PoC, attack flow, detection signatures, and…

A framework for constructing self-spreading binaries

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

Proof-of-concept for CVE-2024-37726: local privilege escalation in MSI Center via arbitrary file overwrite using symlink/junction attacks and OpLock…

exp for CVE-2019-0887

Proof-of-concept exploit for CVE-2024-31771 demonstrating arbitrary file write in TotalAV via symbolic link attack, enabling DLL planting and SYSTEM…

TCP Port Redirection Utility

Local & remote Windows DLL Proxying

🔒 Modern C2 Platform with Cloudflare Tunnel Integration | WinRM & SSH Remote Management | Real-time Terminal & Remote Desktop | Built with FastAPI &…

Trying to tame the three-headed dog.

SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order…

Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

A Golang implant that uses Slack as a command and control server

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…