


Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

🛡️ Official AI Security Tool module for CVE-2026-21858 + CVE-2025-68613 (n8n "Ni8mare" Unauthenticated Arbitrary File Read & Expression Injection…

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

Newfold plugins (wp-module-data <= 2.9.7) Unauthenticated

Linux kernel module that grants root privileges, hides processes/files, and protects itself from unloading, designed for educational purposes on…

Autonomous red-team engagement platform with MITRE ATT&CK module orchestration, DAG attack-path solving, OPSEC controls, encrypted credential vault,…

Code execution/injection technique using DLL PEB module structure manipulation

Linux post-exploitation framework with a UEFI bootkit that persistently and stealthily loads a Rust-based kernel module rootkit on modern Linux…

Windows keylogging module for the Sliver C2 implant framework, using Raw Input to capture keystrokes and expose start, stop, and retrieval commands…

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

PowerShell module for post-breach Azure red teaming, automating token extraction, resource enumeration, and lateral movement within managed identity…

Proof-of-concept module for CVE-2026-54121 (Certighost), exploiting AD CS enrollment validation via rogue LDAP/SMB listeners to impersonate a Domain…

Cobalt Strike UDRL that performs advanced module stomping using VEH to intercept calls, unmap modules during sleep, and remap fresh modules to evade…

pwncat module that automatically exploits CVE-2021-4034 (pwnkit)

pwncat module that automatically exploits CVE-2022-0847 (dirtypipe)

A Metasploit auxiliary module that escalates from any low-privileged domain user to full domain compromise by abusing the AD CS enrollment "chase"…

Metasploit module that exploits Apache HTTP Server SSRF (CVE-2024-38472) on Windows to reach internal services and achieve remote code execution.