GitHunt

Karim Jaber (Exfil0)

exfil0

Passionate Cyber Security/Intelligence Specialist & IT Researcher with over 10 years experience.

ScaryByte
South Africa

Languages

Python92%PowerShell4%Shell4%

Repos

37

Stars

87

Forks

26

Top Language

Python

Loading contributions...

Top Repositories

Repositories

37
EX
exfil0/phantom_whisper

The Phantom Whisper is a sophisticated, production-grade Python orchestration framework designed to deploy zero-click exploits with surgical precision.

Python143Updated 7 months ago
andoirdc2exploitioslinuxpentestpentest-toolpocred-teamingwhatsappzero-click
EX
exfil0/RevBot

RevBot is an advanced, modular reverse shell generator for penetration testing and educational use.

Python62Updated 7 months ago
c2-frameworkcybersecurityencryptionfile-transferpenetration-testingpersistencepython-toolred-teamreverse-shellwebsocket-c2
EX
exfil0/browsec

This project provides a robust, stealth-optimized framework for collecting detailed browser and system information from a website visitor without their explicit consent, and exfiltrating that data to a remote server.

10Updated 9 months ago
browsercookieshackobfuscationpocstealth-automation
EX
exfil0/CVE-2025-53770

A sophisticated, wizard-driven Python exploit tool targeting CVE-2025-53770, a critical (CVSS 9.8) unauthenticated remote code execution (RCE) vulnerability in on-premises Microsoft SharePoint Server (2016, 2019, Subscription Edition)

Python51Updated 8 months ago
attackcve-2025-53770exploitpocpostexplotationpythonsharepoint
EX
exfil0/CVE-2025-59718-PoC

Fortinet announced two closely related authentication‑bypass vulnerabilities on 9 December 2025. Both flaws involve improper verification of cryptographic signatures (CWE‑347) in the handling of SAML responses for the FortiCloud SSO login feature.

Python54Updated 3 months ago
EX
exfil0/SWEEPERZERO

A professional-grade Python application for detecting technical surveillance threats including RF bugs, rogue Wi-Fi access points, BLE tracking devices, and GSM cell site simulators (IMSI catchers).

Python60Updated 2 months ago
EX
exfil0/SIGINTPI

This document explains how to set up and run the wizard scripts in the wizard/ folder of the SIGINTPI project.

Python10Updated 1 year ago
bladerfgr-gsmgsmhackrfimsiinterceptionlocationosmocomraspberrypirtl-sdrsigintsmstmsi
EX
exfil0/SMTP-Hunter

SMTP-Hunter is an advanced, aggressive SMTP penetration testing tool designed for security professionals to identify vulnerabilities in SMTP servers.

Python31Updated 8 months ago
advancedaggressiveai-driven-analyticsbetacloudcvehackertoolspenetration-testingsmtpsmtp-scsmtp-scriptsmuggling
EX
exfil0/FalconOne-IMSI

No description provided.

Python21Updated 2 months ago
EX
exfil0/collectjuices

CollectJuices is a powerful tool designed to automate the process of fetching, analyzing, and recursively processing JavaScript files to discover URLs and secrets. Leveraging the capabilities of the JSluice tool and advanced Python libraries, CollectJuices is an essential tool for cybersecurity professionals.

Python50Updated 1 year ago
attackattack-surfacecybersecurityfuzzinginformation-gatheringintelligencepythonsecretsurl
EX
exfil0/5G-NETWORK-SLICING-VULNERABILITY

Below is a complete Python script that implements a single-node or distributed 5G slicing lab wizard.

Python20Updated 1 year ago
5g-core-network5g-simulation5gvulnerabilitydos-attackfuzzinglocation-trackingpocslicing
EX
exfil0/WEAPONIZING-CVE-2024-4367

CVE-2024-4367 is a critical vulnerability (CVSS 9.8) in PDF.js, allowing arbitrary JavaScript code execution due to insufficient type checks on the FontMatrix object within PDF files.

Python20Updated 1 year ago
cve-2024-4367spywareweaponized
EX
exfil0/HornetStrikeOS

No description provided.

10Updated 1 year ago
EX
exfil0/IronVeil

Iron Veil is a comprehensive, militarized subdomain enumeration and verification tool built in Python.

Python20Updated 8 months ago
active-discoverylive-verificationpassive-reconnaissanceport-scannerpythonrecursionscalablestealthsubdomain-enumerationsubdomain-scannerwildcard-filtering
EX
exfil0/SQLi-Advanced-Scanner

The Advanced SQL Injection Scanner is a sophisticated, Python-based tool crafted for security analysts and penetration testers. It automates the detection of SQL Injection vulnerabilities in web applications by sending varied SQLi payloads to specified URLs and analyzing the responses for signs of injectable parameters.

Python45Updated 2 months ago
automatedcybersecuritylinuxpayloadspythonscannersqlinjection
EX
exfil0/WinMal

Advanced PowerShell-based red team implant along with a custom C2 (Command & Control) server

PowerShell21Updated 1 year ago
aes-gcm-encryptionamsi-bypassc2dll-sideloadingedr-evasionimplantkernel-bypassmalwarepersistencepocpolyglotprocess-ghostingwindows
EX
exfil0/SpyHunter

No description provided.

Python10Updated 7 months ago
EX
exfil0/SA-OSINT-ENDPOINTS

No description provided.

00Updated 3 months ago
EX
exfil0/cerberus-singularity

Cerberus Singularity is the ultimate evolution in adaptive web application infiltration, designed specifically to target JSF (JavaServer Faces) login pages with unparalleled intelligence, stealth, and resilience.

Python10Updated 8 months ago
attackcaptchbypassexploitpocpythonsqlmapwaf
EX
exfil0/AndroCap

No description provided.

00Updated 5 months ago
EX
exfil0/ad_takeover_wizard

tealthWizard is a military-grade penetration testing tool engineered for covert operations against Active Directory (AD) environments and Microsoft 365 (M365) cloud tenants.

Python10Updated 9 months ago
active-directoryautomatedhenternmappocpythonremote-access-toolwizard
EX
exfil0/CVE-2025-32756-POC

Designed for Demonstration of Deep Exploitation.

Python40Updated 10 months ago
EX
exfil0/CVE-2024-55591-POC

A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability (CVE-2024-55591) in certain Fortinet devices.

Python127Updated 10 months ago
attack-surfaceautomatedcve-2024-55591firewallfortinetpocwizard
EX
exfil0/Debian-Tor-Site-Engine

A comprehensive wizard-style tool to install and configure a single-instance Tor hidden service on Debian/Ubuntu systems.

Python10Updated 1 year ago
automateddebianfail2banfwonion-addressonion-servicestortor-serverubuntuwizard
EX
exfil0/dynamic_enum_wizard

Dynamic_enum_Wizard is a curses-based wizard that conducts a wide range of security reconnaissance tasks while keeping the terminal output to a minimum.

Python10Updated 1 year ago
attacksurfacecybersecuritydefenseexploitmappingoffensive-securityreconnaissanceredteamingscannerwizard
EX
exfil0/ADEVIL

No description provided.

00Updated 10 months ago
EX
exfil0/WiEvil

Generates a Root CA to facilitate certificate-based HTTPS interception, serves that certificate via a captive portal, and optionally installs mitmproxy for full HTTPS MITM.

Shell20Updated 1 year ago
debiandecryptionhotspothttphttps-inspectionhttps-interceptionhttps-proxymitmmitmproxyraspeberry-pissl-certificateswireless
EX
exfil0/luhn-wizard

This repository contains a Python script that validates card numbers using the Luhn algorithm, fetches BIN details using the Binlist API, and generates professional JSON reports for single and batch validations.

Python00Updated 1 year ago
amlbankcardbin-numbercomplianceemvfraud-preventionkycluhn-algorithmvalidation
EX
exfil0/MSSQLSEC

MSSQLSEC is a comprehensive toolkit, incorporating advanced tools and methodologies, specifically designed for performing in-depth audits on MSSQL databases. It is more than just a static set of tools; it's a dynamic framework that continuously evolves to meet the demands of the changing landscape of database security and audit requirements.

21Updated 11 months ago
active-directoryauditlinuxmssqlmssql-databasemssqlserversecuritywindows
EX
exfil0/File-Extension-Spoofing-Tool-FEST

This tool is designed for file extension spoofing. It allows users to create a copy of a file with a spoofed extension. This can be useful in various testing scenarios, including security testing and penetration testing exercises. The tool uses a special Unicode character to reverse the order of characters in the spoofed extension.

Python10Updated 2 years ago
attack-defensecharactercharactersextensionfilepentestingpython3reversesecurityspoofingtestingunicode

Gists

Recent Activity

Karim Jaber (Exfil0) (exfil0) | GitHunt