
Elite
Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

🛡️ Official AI Security Tool diagnostic module for CVE-2026-41089 (Windows Netlogon Stack Buffer Overflow RCE). Features technical writeup, attack…

CVE-2015-3306 - ProFTPD - RCE Home Lab setup (Docker) easy to use for Red Teaming or Penetration Testing

Dockerized exploit for CVE-2022-22947 targeting Spring Cloud Gateway. Provides a ready-to-use environment for testing and demonstrating the remote…

Proof-of-concept exploit for CVE-2023-0264 (Keycloak OIDC session hijacking) with a frontend for session_id substitution and an agent that detects…

XLL Phishing Tradecraft

First iteration of ML based Feedback WAF

PHP shells that work on Linux OS, macOS, and Windows OS.

PoC exploit for unauthenticated remote code execution in DBGate via the /runners/start endpoint, with blind RCE mode and container-based testing…

Go-based proof-of-concept exploit for CVE-2023-5044 in ingress-nginx, enabling authenticated remote command execution by creating crafted Kubernetes…

Docker Container Escape POC via mlx-metal importlib

Docker-based proof-of-concept exploit for CVE-2019-19356, enabling rapid reproduction and testing of the vulnerability in a controlled environment.

Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.

Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagements,…

Red Team AI Benchmark: Evaluating LLMs for authorized offensive-security tasks. Red Team AI Benchmark is a CLI model-evaluation benchmark. It…