
Elite
Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

Exploits for CVE-2017-6008, a kernel pool buffer overflow leading to privilege escalation.

Post-authentication reverse shell exploit for Webmin <=1.984 leveraging CVE-2022-0824 File Manager privilege escalation. Downloads and executes a CGI…

BOF to impersonate TrustedInstaller via DISM API trigger and thread impersonation

Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)

PoC for the CVE-2022-41080 , CVE-2022-41082 and CVE-2022-41076 Vulnerabilities Affecting Microsoft Exchange Servers

Privilege escalation using the XAML diagnostics API (CVE-2023-36003)

CVE-2023-32243 - Essential Addons for Elementor 5.4.0-5.7.1 - Unauthenticated Privilege Escalation

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

Hides Process From Task Manager Using NT API Hooking (NtQuerySystemInformation)

Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11

Memory API proxy via signed mozglue.dll

VMware Aria Operations for Logs CVE-2023-34051

This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability

This is a pre-authenticated RCE exploit for VMware vRealize Operations Manager

MSSQL client for SCCM environments, enabling reconnaissance, remote PowerShell execution on managed clients, and extraction of sensitive secrets such…

Exploit for CVE-2023-22515 in Atlassian Confluence that creates a new admin user and deploys a web-based shell plugin for command execution on the…

Advanced Exploitation Toolkit for Next.js Server Actions (CVE-2025-55182)