
RendezvousRAT
Self-healing RAT utilizing libp2p

Self-healing RAT utilizing libp2p

Parse and visualize /proc/self/environ on compromised Linux boxes — categorizes env vars by tech stack (AWS, Django, Rails, NodeJS, MySQL, K8s,…

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

Pure-Nim network enumeration and remote execution toolkit for authorized security assessments. Supports SMB, LDAP, Kerberos, WinRM, database clients,…

Nim Library for Offensive Security Development

Flowise Windows RCE exploit for CVE-2026-58057. Bypasses environment variable validation via case-sensitive flaw. Uses node_options to inject…

Collection of exploits and documentation for the Linux Dirty Pipe vulnerability (CVE-2022-0847), enabling arbitrary file overwrite and SUID binary…

Modular post-exploitation framework managing reverse-shell sessions over TCP/TLS/mTLS with plugins for enumeration, in-memory execution, SOCKS5…

Living Under the Land on Linux ~ Bsides Belfast/Vienna 2025

DDoor - cross platform backdoor using dns txt records

An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.

tool for requesting Entra ID's P2P certificate and authenticating to a remote Entra joinned devices with it

Automates Linux swap analysis to extract user credentials, web form data, WiFi keys, and HTTP authentication during post-exploitation or forensic…

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.

Offensive Software Exploitation Course

Curated collection of offensive security tools and commands for Active Directory attacks, C2, privilege escalation, obfuscation, and web pentesting.

CVE-2026-43499 GhostLock futex UAF LPE PoC for OPPO PCKM00 (SM6150) / Linux 4.14.180

CVE-2026-31431-CopyFail---Minified-LPE-PoC