
CouchPotato
Windows privilege escalation tool that abuses SeImpersonatePrivilege via indirect syscalls, patching ETW and AMSI to elevate from service account or…

Windows privilege escalation tool that abuses SeImpersonatePrivilege via indirect syscalls, patching ETW and AMSI to elevate from service account or…

Autonomous AI penetration testing agent that orchestrates multi-agent recon, exploitation, post-exploitation, and reporting with persistent…

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Load your driver like win32k.sys

Customizable Stage0 C2 framework with C and Rust agent templates, a Flask backend, and a React dashboard for building and operating your own C2…

Rust in-memory dumper

For when DLLMain is the only way

Indirect syscalls + DInvoke made simple.

Modular command-and-control framework abusing Microsoft Outlook's Home Page feature for stealthy persistence, remote access, and post-exploitation.

EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.

A PoC ransomware sample to test out your ransomware response strategy.

Python script to efficiently find files on UNIX like file systems with specific properties (quicker than find)

Local & remote Windows DLL Proxying

HTTP/HTTPS interception proxy for testing Windows authentication mechanisms, supporting NTLM, Kerberos, pass-the-hash, pass-the-ticket and relay…

A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.

A client and chat program for njrat 0.6.4, 0.7d, and 0.7d golden edition.

Script is a proof of concept how to control your machine by using social media sites.

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…