Havoc is a modern and malleable post-exploitation command and control framework that provides a client-server architecture with a cross-platform UI, teamserver, and demon agent, offering features such as payload generation, customizable C2 profiles, and extensibility through external C2 and custom agents. It supports multiple platforms including Debian, Ubuntu, and Kali Linux, and requires a modern version of Qt and Python 3.10.x. The framework is still in an early state of release and breaking changes may be made to APIs/core structures as it matures.
Comprehensive tutorial on modern exploitation techniques with a focus on understanding exploitation from scratch.
Mortar is an evasion technique to defeat and divert detection and prevention of security products, including AV, EDR, and XDR solutions.
A full-featured reconnaissance framework for web-based reconnaissance with a modular design.
SauronEye helps in identifying files containing sensitive data such as passwords through targeted directory searches.
A collection of Python scripts for password spraying attacks against Lync/S4B & OWA, featuring Atomizer, Vaporizer, Aerosol, and Spindrift tools.
A proof-of-concept obfuscation toolkit for C# post-exploitation tools, designed to conceal malicious activities from detection.
A Linux-based environment for penetration testing and vulnerability exploitation
A simple, fast web crawler for discovering endpoints and assets in a web application
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.