
CVE-2026-75898
Proof-of-concept for CVE-2026-75898, an SSRF in RAGFlow's Invoke component. Demonstrates the vulnerability with unmodified source, includes E2E…

Proof-of-concept for CVE-2026-75898, an SSRF in RAGFlow's Invoke component. Demonstrates the vulnerability with unmodified source, includes E2E…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

Dynamically invoke arbitrary unmanaged code

PowerShell exploit for CVE-2021-1675 PrintNightmare that disables AMSI and creates a local administrator account on vulnerable Windows systems.

PowerShell Remote Download Cradle Generator & Obfuscator

PowerShell Script to automatically abuse the BadSuccessor vulnerability (CVE-2025-53779)

powershell tool for VM evasion

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

Dynamically invoke arbitrary unmanaged code from managed code without PInvoke.

A simple PoC to invoke an encrypted shellcode by using an hidden call

Simple & Powerful PowerShell Script Obfuscator

Cmd.exe Command Obfuscation Generator & Detection Test Harness

This cheatsheet maps common impacket workflows to their modern alternatives

Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native…

PowerShell tool for transferring files in restricted environments (Citrix, RDP, VNC, Guacamole) via clipboard, Base64 chunks, keystrokes, or OCR…

Arbitrary Function Call Exploit using the ThrottleStop driver

Proof of concept for CVE-2020-36708

CVE-2025-54100(PowerShell 远程代码执行漏洞)