
THM---Solar-exploiting-Log-4j
This room is based on exploiting the notorious Log4j vulnerability ( CVE-2021-44228), also referred to as the Log4Shell. The weakness enables…

This room is based on exploiting the notorious Log4j vulnerability ( CVE-2021-44228), also referred to as the Log4Shell. The weakness enables…

Shadow Workers is a free and open source C2 and proxy designed for penetration testers to help in the exploitation of XSS and malicious Service…

This is working POC of CVE-2022-36271

Exploit for CVE-2025-54914 in Azure Networking, creating malicious routes with evasion, persistence, multi-target scanning, and reporting for…

CVE-2024-36842, Creating Persistent Backdoor on Oncord+ android/ios car infotaiment using malicious script!

Malicious WMI Events using PowerShell

Generate a proxy dll for arbitrary dll

Generate Proxy DLLs in Rust

Forge certificates for Active Directory authentication using stolen Certificate Authority private keys, enabling persistent domain access with forged…

🐾Dogwalk PoC (using diagcab file to obtain RCE on windows)

PowerShell-based command and control framework using website-hosted payloads for persistent remote access and post-exploitation on Windows systems.

Python Remote Access Tool

OS Command Injection Vulnerability via Cache Clearing Scheduler in Reolink Desktop Application

👁️ (s)AINT is a Spyware Generator for Windows systems written in Java. [Discontinued]

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

LD_PRELOAD-based tool that hijacks gcc to inject malicious code into binaries during linking, enabling stealthy backdoor deployment without source…

Static security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.

GUI tool for creating malicious RAR archives exploiting CVE-2025-8088 path traversal. Uses NTFS ADS stealth and RAR5 header injection for payload…