
PrintSpoofer-ReflectiveDLL
The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

Python implementation of OpenPsPipeJack


CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell,…

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Cisco Email Security Appliance: Local Privilege Escalation and Shell Escape

Cisco Email Security Appliance: Remote Code Execution - RCE from config file

Partial python implementation of SharpGPOAbuse

Tools and Techniques for Red Team / Penetration Testing

BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation

Exploitation of CVE-2025-29969

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass

Python tool to automatically perform SPN-less RBCD attacks.

Stored XSS in Nagios Log Server 2024R1.3.1

Windows Session Hijacking via COM

eventin <= 4.0.34 - privilege escalation via user email change / account takeover for authenticated contributor+

C# and Impacket implementation of PrintNightmare CVE-2021-1675/CVE-2021-34527