
ligolo-iwa
A Ligolo-ng JavaScript agent working inside Chrome & Chromium-based browsers by leveraging Isolated Web Applications.

A Ligolo-ng JavaScript agent working inside Chrome & Chromium-based browsers by leveraging Isolated Web Applications.

iptables-based stateful firewall with human-friendly configuration and optional QoS (FireQOS) for bandwidth management.

C# post-exploitation tool for abusing Microsoft Configuration Manager (SCCM) to perform lateral movement, credential gathering, and NTLM…

Researched and executed real-world CVE exploits in a controlled sandbox: CVE-2000-0168 DoS on Windows 95, ARP Spoofing with NTLMv2 credential…

psexecsvc - a python implementation of PSExec's native service implementation

AI-powered LinkedIn engagement assistant

Kerberos relaying and unconstrained delegation abuse toolkit

SEt framework

Local privilege escalation exploit for CVE-2025-62676.

Exploitation of CVE-2025-29969

SetupHijack is a security research tool that exploits race conditions and insecure file handling in Windows applications installer and update…

Cobalt Strike BOF to freeze EDR/AV processes and dump LSASS using WerFaultSecure.exe PPL bypass

Proof-of-Concept for exploiting CVE-2025-1910, a local privilege escalation within Watchguard's Mobile VPN with SSL client.

API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites

Python tool to automatically perform SPN-less RBCD attacks.

Passive network security sniffer that analyzes 28 protocols (ARP, STP, OSPF, VLAN, SCADA) to detect vulnerabilities in network equipment without…

🔒 Modern C2 Platform with Cloudflare Tunnel Integration | WinRM & SSH Remote Management | Real-time Terminal & Remote Desktop | Built with FastAPI &…

Proof-of-concept for CVE-2025-47962 demonstrating local privilege escalation via DLL hijacking in Windows IpOverUsbSvc service due to insecure…