Active Directory
Active Directory Boom
AD penetration testing intelligence engine with decision trees and live relevance scoring.
ADCS Attack Reference (ESC1–ESC16)
Complete ADCS attack reference: ESC1-ESC16, shadow credentials, PassTheCert, real walkthroughs.
BloodHound Attack Reference
Dynamic attack reference with Cypher queries, attack paths, and owned-node workflows.
bloodyAD Attack Reference
Complete attack reference for DACL abuse, GenericWrite, GenericAll, and LDAP privilege escalation.
NetExec Reference
Exhaustive NetExec reference across SMB, LDAP, WinRM, MSSQL, SSH, FTP, RDP, WMI, and NFS.
Privilege Escalation
Web & Injection
Authentication Bypass Toolkit
JWT forge, cookie decoder, MFA/OTP attacks, and brute force generators.
Command Injection Toolkit
OS-specific payloads, shell generators, and filter evasion techniques.
SQL Injection Operator
Payload generators, WAF transformers, and sqlmap command builders.
SQL Injection to RCE Toolkit
File write, UDF, xp_cmdshell, COPY PROGRAM, and Oracle scheduler abuse.
Web Exploitation Arsenal
XSS, LFI, RFI, SSRF, XXE, SSTI, file upload, and command injection payloads.
Web Enumeration Reference
20-phase recon workflow, JWT decode, and export scripts.