

PowerShell module for post-breach Azure red teaming, automating token extraction, resource enumeration, and lateral movement within managed identity…

This C# tool sprays for admin access over the entire domain

Multithreaded C# .NET assembly for enumerating local administrative privileges across Windows hosts via SMB, WMI, and WinRM, with BloodHound…

This is a pre-authenticated RCE exploit for VMware vRealize Operations Manager

Yet Another PHP Shell - The most complete PHP reverse shell

GhostHound is a BloodHound OpenGraph extension that surfaces Active Directory tombstone reanimation as a first-class attack path, enumerating deleted…

A care package of useful bofs for red team engagments

Determine privileges from cloud credentials via brute-force testing.


Interactive post-exploitation tool for Linux privilege escalation, enumeration, file exfiltration, and credential harvesting via reverse shell.

An interactive CLI application for interacting with authenticated Jupyter instances.

Remot3d: is a simple tool created for large pentesters as well as just for the pleasure of defacers to exploit a system or server that runs a PHP…

Python script to efficiently find files on UNIX like file systems with specific properties (quicker than find)

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

on Mac 10.12.2

Sudo exploit
