
LaZagne
Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security…

A simple C2 Framework written in modern C++

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

An information security preparedness tool to do adversarial simulation.

Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…

.NET tool for installing Windows persistence via registry keys, scheduled tasks, services, WMI events, COM hijacks, and LNK backdoors, supporting…

Python-based keylogger and surveillance tool with Telegram C2, capturing keystrokes, screenshots, webcam, audio, clipboard, and system activity for…

An open-source post-exploitation framework for students, researchers and developers.

SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

The TrustedSec Attack Platform is a reliable method for droppers on an infrastructure in order to ensure established connections to an organization.

Generate Payloads and Control Remote Machines. [Discontinued]

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

Assist reverse tcp shells in post-exploration tasks

Powershell Persistence Locator