

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

An ADCS honeypot to catch attackers in your internal network.

Exploits locked/password protected computers over USB, drops persistent WebSocket-based backdoor, exposes internal router, and siphons cookies using…

Use Exposed KongAPI to act like a proxy and get metadata urls or internal urls

The detection of internal security controls at a company

A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.

Technical Reference to multiple relay techniques

Requests Baskets (CVE-2023-27163) and Mailtrail v0.53


Curated repository of vulnerability disclosures from Mandiant, including CVEs discovered through internal research, red team assessments, and wild…

CVE-2025-29927: Next.js Middleware Bypass Vulnerability

Technical audit of Kioptrix Level 1. Focus: Samba 2.2.1a exploitation (CVE-2003-0201), manual enumeration, and internal infrastructure hardening.

PoC for CVE-2024-21626: runc leaks an internal fd referencing the host CWD before pivot_root, enabling container escape by setting process.cwd to…

A critical Server-Side Template Injection (SSTI) vulnerability exists in the X-Trading Portal v1.4.2 dashboard metadata rendering engine. The flaw…

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

This is an open source tool to dump the wifi profiles and cleartext passwords of the connected access points on the Windows machine. This tool will…

Explore the network using VPNPivot tool