
PiX-C2
Ping Exfiltration Command and Control (PiX-C2)

Ping Exfiltration Command and Control (PiX-C2)

SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket

Post-exploitation credential harvesting toolkit that injects into password managers and Windows utilities to capture credentials via DLL proxying,…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Check for valid credentials across a network over SMB

A windows token impersonation tool


Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

Exploit toolkit for AD CS CVE-2026-54121: low-privileged domain users impersonate a Domain Controller, forge certificates, and compromise the domain…

Exploit for CVE-2020-1472 (ZeroLogon) that resets the domain controller account password and enables DCSync for full domain compromise.

Windows service agent for CALDERA adversary emulation platform. Installed on target computers to communicate with the CALDERA server, enabling…

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Weaponizes Selenium to automate credential theft, cookie dumping, email exfiltration, and file extraction from Chromium browsers for red team…

Cisco Email Security Appliance: Local Privilege Escalation and Shell Escape

A proxy aware C2 framework used to aid red teamers with post-exploitation and lateral movement.

Steam Client Service Local Privilege Escalation Vulnerability

Tools and Techniques for Red Team / Penetration Testing

Trying to tame the three-headed dog.