


Cisco Email Security Appliance: Remote Code Execution - RCE from config file

Exploiting Parsec for Windows to gain SYSTEM privileges


GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

USB Army Knife – the ultimate close access tool for penetration testers and red teamers.


Easy peasy file uploads


Python 2.7

A proof of concept for CVE 2024 23113 inspired by WatchTowr's article.

⭐️The famous XWorm RAT, version 2.1. Educational purposes only

Open-source RDP client for connecting to Windows Terminal Services from Unix-like systems, supporting RDP versions 4 and 5 with smart-card…

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...


Bypassing EDR's with stealthy c++ telegram Bot and Telegram itself as C2 interface !