
CVE-2025-50505
Exploit for CVE-2025-50505 in Clash Verge Rev, demonstrating local privilege escalation and remote code execution via unauthenticated API, including…

Exploit for CVE-2025-50505 in Clash Verge Rev, demonstrating local privilege escalation and remote code execution via unauthenticated API, including…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Trying to tame the three-headed dog.

Kerberos relay framework for Windows environments enabling authentication relay, privilege escalation, and lateral movement via LDAP, SMB, HTTP, and…

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…


Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

VMware Aria Operations for Logs CVE-2023-34051

Manipulating and Abusing Windows Access Tokens.

Dominate Active Directory with PowerShell.

Windows Session Hijacking via COM

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

Exploit for CVE-2020-1472 (ZeroLogon) that resets the domain controller account password and enables DCSync for full domain compromise.

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

Detection-aware BloodHound attack-path scoring - the quietest route to your objective, calibrated across five detection tiers…

Python library and client for token manipulations and impersonations for privilege escalation on Windows

Tools and Techniques for Red Team / Penetration Testing

The Shadow Attack Framework