
peeko
peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

A PHP Based Tool That Helps You To Manage All Your Backdoored Websites Efficiently.

This room is based on exploiting the notorious Log4j vulnerability ( CVE-2021-44228), also referred to as the Log4Shell. The weakness enables…

PoC command injection example for cve-2018-1002105 based off https://github.com/gravitational/cve-2018-1002105

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…

A high-performance, memory-safe implementation of the WinRAR CVE-2025-8088 exploit tool, rewritten in Rust for better reliability and performance.

Exploit for CVE-2026-41940 providing direct shell access via websocket and persistence through root API key injection.

Python CLI that exploits CVE-2026-48907 in Joomla JCE via profile-import upload, verifies shell paths, and opens an interactive command channel on…