
EggShell
iOS/macOS/Linux Remote Administration Tool

iOS/macOS/Linux Remote Administration Tool

RedSnarf is a pen-testing / red-teaming tool for Windows environments

MSDAT: Microsoft SQL Database Attacking Tool

Proof-of-Concept tool for extracting credential material from protected sessions on modern Windows systems.

Demonized Shell is an Advanced Tool for persistence in linux.

Active Directory information dumper via ADWS for evasion purposes.

Activation Context Hijacking Evasion Tool

Windows offline filesystem hacking tool for Linux

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

Anvil is a runtime-first attack surface assessment tool for Windows thick client applications, built for penetration testers and security researchers…

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

🚀 CVE-2026-41940 cPanel/WHM Auth Bypass Exploit - Best Flow 💥 CRLF injection leads to auth bypass, session hijacking & account leak. ✅ Proxy,…

A sophisticated, wizard-driven Python exploit tool targeting CVE-2025-53770, a critical (CVSS 9.8) unauthenticated remote code execution (RCE)…

CVE-2026-56164 is a critical missing-authentication vulnerability affecting on-premises Microsoft SharePoint Server. It allows unauthenticated,…

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).


Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

Multi-threaded mass scanner for CVE-2026-8732 in WordPress WP Google Map Pro. Automates nonce extraction, token exploitation, and hidden admin…