
impersonate-proxy
A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, Python and…

Public writeup, PoC, and emulation materials for CVE-2026-8508 affecting Zyxel captive-portal social login.

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…

SSH spreading made easy for red teams in a hurry

Python implementation of OpenPsPipeJack

An extensible toolkit providing penetration testers an easy-to-use platform to deploy Access Points during penetration testing and red team…


Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

Curated list of OSINT tools for offensive security, covering email harvesting, subdomain enumeration, threat intelligence, and social engineering for…

Async BOF to automatically extract or renew Kerberos TGTs on a target system.

KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Cisco Email Security Appliance: Local Privilege Escalation and Shell Escape

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).

Repository of attack and defensive information for Business Email Compromise investigations

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

PowerShell toolkit for remote template injection attacks and defense. Injects malicious links into Office Word documents for phishing, with…