
Loki.Rat
Loki.Rat is a fork of the Ares RAT, it integrates new modules, like recording , lockscreen , and locate options. Loki.Rat is a Python Remote Access…

Loki.Rat is a fork of the Ares RAT, it integrates new modules, like recording , lockscreen , and locate options. Loki.Rat is a Python Remote Access…


Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.

Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11

WIP Post-exploitation framework tailored for hypervisors.

SS-RAT (Schwarze-Sonne-Remote-Access-Trojan)

Bypassing EDR's with stealthy c++ telegram Bot and Telegram itself as C2 interface !

PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version…

Sigma detection rules for AI agent security monitoring

WORK IN PROGRESS. RAT written in C++ using Win32 API

Security benchmark for evaluating OpenClaw agents against adversarial execution contexts including poisoned files, injected skills, misleading tool…

"Reverse engineering analysis of Agent Tesla, a .NET-based info-stealer that uses APC injection, token manipulation, and registry persistence.…

unauthenticated RCE in WordPress core (CVE-2026-63030 + CVE-2026-60137)


Vulnerability research on Tesla Model 3/Y infotainment systems. 6 vulnerabilities, 4 CVEs (CVE-2022-42005 through CVE-2022-42008). Root shell,…

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox…

Nalpeiron Licensing Service (NLSSRV32) arbitrary disk read [CVE-2019-19315]