
beef
The Browser Exploitation Framework Project

The Browser Exploitation Framework Project

Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?

Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel

A fork of the great TokenTactics with support for CAE and token endpoint v2

Mobile Edge-Dynamic Unified Security Analysis

Exploit for Apache Airflow FAB OAuth authentication bypass (CVE-2026-59243) that achieves admin access and remote code execution by triggering a…

Contained is all my reference material for my OSCP / Red Teaming. Designed to be a one stop shop for code, guides, command syntax, and high level…

A Collection of Over 60 Scripts - updated specifically for the BadUSB function on the FlipperZero.

🚀 CVE-2026-41940 cPanel/WHM Auth Bypass Exploit - Best Flow 💥 CRLF injection leads to auth bypass, session hijacking & account leak. ✅ Proxy,…

Copy Fail - CVE-2026-31431 - Hardened C implementation for redteam and authorized penetration testing operations. ⚠️ Legal Notice: This tool is…

Windows rootkit for Intel x64 with 25+ features, demonstrating rootkit techniques compatible with all Windows 10 and Windows 11 versions.

Presentation material presented by Outflank team members at public events.


Temporarily removes the root password using CVE-2026-31431

Automated exploitation scanner for Oracle Reports Server (rwservlet) — CVE-2012-3152 / CVE-2012-3153. Detects, fingerprints, reads files via LFI,…

a Fedora remix focused on pentesting and purple hat tooling

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Pix for WooCommerce <= 1.5.0 - Unauthenticated Arbitrary File Upload