
LaZagne
Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

RAT-el is an open source penetration test tool that allows you to take control of a windows machine. It works on the client-server model, the server…

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…

GitPwnd is a network penetration tool that lets you use a git repo for command and control of compromised machines

LD_PRELOAD-based tool that hijacks gcc to inject malicious code into binaries during linking, enabling stealthy backdoor deployment without source…

Windows tool that disables Driver Signature Enforcement by patching kernel variables, allowing unsigned drivers to load for testing and research.

Linux process identity cloaking tool that spoofs comm, argv, cmdline, environ, exe path, and VMAs via an 11-phase prctl pipeline to impersonate…

A tool to abuse Exchange services

Exploit CVE-2024-43468 and CVE-2025-59213 to implant a controlled backdoor into SCCM Management Point's SQL stored procedure, enabling remote SQL…

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Source Code Management Attack Toolkit

Source Code Management Attack Toolkit

Android root tool for Samsung Galaxy S25 Ultra (SM-S938B) that chains DirtyFrag CVE-2026-43284 and CVE-2026-43499 to gain root automatically at boot…

A tool to convert windows registry export files into windows hive files that can be used to replace NTUSER.MAN