
profilehound
ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets by…

ProfileHound - BloodHound OpenGraph collector for user profiles stored on domain machines. Make informed decisions about looting secrets by…

Low-observability Active Directory security enumeration tool using native ADSI/COM interfaces. Enumerates ACLs, delegation, trusts, ADCS, Kerberoast…

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

Modular post-exploitation framework managing reverse-shell sessions over TCP/TLS/mTLS with plugins for enumeration, in-memory execution, SOCKS5…


Application-scoped Windows network brownouts in native C and BOF form

Windwos Zero Day Local PrivESc Exploit (CVE-2026-41091)

Collection of exploits and documentation for the Linux Dirty Pipe vulnerability (CVE-2022-0847), enabling arbitrary file overwrite and SUID binary…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

Extracting Clear Text Passwords from mstsc.exe using API Hooking.

Autonomous AI penetration testing agent that orchestrates multi-agent recon, exploitation, post-exploitation, and reporting with persistent…

Python Exploitation Framework, V8 Engine Debugger, Proxy interceptor, marketplace, post-exploitation, backdoor generator,....

Cobalt Strike BOF for in-process .NET assembly execution with AMSI/ETW bypass, custom AppDomain, and named pipe/mailslot output redirection.

a tool to help operate in EDRs' blind spots

Proof-of-concept obfuscation toolkit for C# post-exploitation tools

C# implementations of shellcode injection techniques including classic injection, thread hijacking, process hollowing, and atom bombing, using…