
CVE-2021-40444
Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…
Tools for creating and customizing malicious code or instructions to execute after exploitation.

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…


Blind XSS detection and exploitation platform with persistent sessions, reverse proxy, and automated information gathering for penetration testers…

Undetectable Windows Payload Generation

Gives you one-liners that aids in penetration testing operations, privilege escalation and more

Use Android as Rubber Ducky against another Android device

Automated Mass Exploiter

A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me

Template-Driven AV/EDR Evasion Framework

🔥 CHAOS is a free and open-source Remote Administration Tool that allow generate binaries to control remote operating systems.

PowerShell Runspace Post Exploitation Toolkit

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources

JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)

Generate Gmail Emailing Keyloggers to Windows.

Makes reverse engineering Android apps easier, automating repetitive tasks like pulling, decoding, rebuilding and patching an APK.

Chimera is a PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.