
ARES
Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

Curated library of 78 offensive security SKILL.md modules that prime Claude with expert red team methodology across web, AD, wireless, cloud, and…

Cross-platform Electron GUI for the Sliver C2 framework, providing session and beacon dashboards, payload generation, listeners, loot, and cloud…

Vendor-neutral cloud security testing guide with structured phases for enumeration, privilege escalation, lateral movement, and post-exploitation…

Parse and visualize /proc/self/environ on compromised Linux boxes — categorizes env vars by tech stack (AWS, Django, Rails, NodeJS, MySQL, K8s,…

OneDrive as a covert C2 transport for Cobalt Strike

Autonomous AI penetration testing agent that orchestrates multi-agent recon, exploitation, post-exploitation, and reporting with persistent…

Curated penetration testing wiki with daily-updated techniques, scripts, and checklists for reconnaissance, web, cloud, mobile, and…

Module-based AWS exploitation framework for red team testing and blue team analysis. Emulates attack patterns in the AWS control plane with unique UA…

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM 🔥 via Cloud Files API + NTFS junction…

Exploit for CVE-2022-44721 that bypasses CrowdStrike Falcon uninstall protection token check on Windows, allowing attackers with admin privileges to…

A container analysis and exploitation tool for pentesters and engineers.

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information

The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencies.

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it