Modular post-exploitation framework with interactive shell handler + pull-based beacon. ECDSA-signed tasks, in-memory payload execution, 65 plugins. Linux & Windows
-
Updated
Oct 6, 2026 - Python
Modular post-exploitation framework with interactive shell handler + pull-based beacon. ECDSA-signed tasks, in-memory payload execution, 65 plugins. Linux & Windows
π Extract and structure security vulnerability data from unstructured text with ease using the lightweight Python package, vuln-structure.
End-to-end Red Team attack chain from SMBv1 exploitation to Active Directory domain compromise (lab write-up)
An authorization-first, policy-governed red-team operations platform that turns scoped security testing into safe, auditable, and evidence-ready workflows
One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password π‘οΈ
Browser-Based Clickfix Generator
A exploit designed to reboot a linux server / system. Sandworm only works on 32-bit linux systems. it looks for riscv32le, calling for a system reboot.
AI autonomous penetration testing + network forensics platform. Groq-powered, 100% free. One command full pentest
Lightweight Active Directory attack surface analyzer that extracts actionable findings from BloodHound data.
Open-source cyber range for offensive security training β isolated labs, live attack detection, and production-grade auth built from scratch
Cloud-Security (Red Team)
Turn Tails OS into a ghost that bites. 50+ pentest tools installed into RAM via interactive menu β Tor-routed, zero persistence, vanishes on reboot.
Offensive security write-ups, CTF walkthroughs and tooling breakdowns β by 0xK4iros.
This repository serves as a portfolio of my work in computer science and offensive security.
NetLoader-X is a defensive load simulation framework designed to safely study server behavior under stress without generating real network traffic.
π Inject API credentials securely into unmodified code via a transparent Envoy proxy, protecting sensitive data during AI agent interactions.
A lightweight Command and Control (C2) framework built for offensive security research and red teaming (Post Exploitation).
This is a simple Python-based keylogger built for educational and ethical hacking purposes. It captures keystrokes system-wide on macOS, logs them to a local file, and optionally sends them to a Discord webhook in real time.
π **Password Complexity Checker & Generator** This tool helps you analyze password strength π and generate secure, random passwords π². It ensures your passwords are tough to crack πͺ by checking for uppercase, lowercase, digits, special characters, and spaces.
To associate your repository with the offensive-security-projects topic, visit your repo's landing page and select "manage topics."