
CVE-2025-24071
Dependency-free Python PoC generator for CVE-2025-24071 that crafts a malicious .library-ms file in a ZIP to trigger Windows Explorer NTLM hash…

Dependency-free Python PoC generator for CVE-2025-24071 that crafts a malicious .library-ms file in a ZIP to trigger Windows Explorer NTLM hash…

Collection of offensive red team scripts including process termination, SPF bypass for phishing, password spraying, and ColdFusion password…

Valid JQuery that profiles the system and returns info to the server in a fake analytics GET request

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

A script that helps you understand why your E-Mail ended up in Spam

Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.

Collection of tools to use with Azure Applications

Repository of attack and defensive information for Business Email Compromise investigations

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

A tool for mapping cyber crime

Emulates a Cisco ASA Anyconnect VPN service for credential harvesting and VBS payload delivery in red team phishing operations.

The Outlook HTML Leak Test Project

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

Scripts to clone CA certificates for use in HTTPS client attacks.

a SET framework templates

USBCoercer turns an ESP32 development board with native USB-OTG into an Ethernet-over-USB gadget capable of coercing proxy configuration via WPAD.


Self contained htaccess shells and attacks