
WindowsDACLEnumProject
A collection of tools to enumerate and analyse Windows DACLs

A collection of tools to enumerate and analyse Windows DACLs

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

A User Impersonation tool - via Token or Shellcode injection

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

We developed GRAT2 Command & Control (C2) project for learning purpose.

Python-Based Pentesting CLI Tool

A Simple bash script that patches the CVE-2022-0847 (dirty pipe) kernel vulnerability on Debian 11

A version of CVE-2017-0213 that I plan to use with an Empire stager


Automatic UAC-Bypassing for custom payloads during privilege escalation testing

🌴Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details,…

Project Ares is a Proof of Concept (PoC) loader written in C/C++ based on the Transacted Hollowing technique

Pass the Hash to a named pipe for token Impersonation


Security research — PoC for local root privilege escalation on macOS Mavericks 10.9.

Excalibur is an Eternalblue exploit payload based "Powershell" for the Bashbunny project.

BOF POC of the DSCourier project / invoking WinGet via COM

Slightly improved exploit of the CVE-2025-24203 iOS vulnerability by Ian Beer of Google Project Zero