
BloodHound-Legacy
Six Degrees of Domain Admin

Six Degrees of Domain Admin

My experiments in weaponizing Nim (https://nim-lang.org/)

Payload Generation Framework

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

A network stress testing tool for simulating high traffic loads.

Persistence by writing/reading shellcode from Event Log

GitLab 11.4.7 SSRF配合redis远程执行代码

Reflective PE loader written in Zig. Loads and executes native and .NET PE files directly from memory.


We asked 6 AIs about their own programming. All 6 said jailbreaking will never be fixed. Run it yourself — $2, 10 minutes.

RCE against WordPress 4.6; Python port of https://exploitbox.io/vuln/WordPress-Exploit-4-6-RCE-CODE-EXEC-CVE-2016-10033.html

A security research tool that identifies and demonstrates the CVE-2025-36911: Fast Pair Pairing Mode Bypass vulnerability

A list of custom Metasploit modules you can use for penetration testing.


pgAdmin Proof of Concept

A PoC exploit for CVE-2015-2166 - Directory Traversal Vulnerability in Ericsson Drutt Mobile Service Delivery Platform (MSDP)

iveresk-CVE-2023-22515

Master's Thesis research on CVE-2024-51324 (BYOVD). Advanced exploit with 4 operational modes (SCANNER, LOADER, KILLER, CLEANUP), SHA-256 driver…