
RedGhost
Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Automated Mass Exploiter

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

Pupy is an opensource, multi-platform (Windows, Linux, OSX, Android), multi function RAT (Remote Administration Tool) mainly written in python. It…

An open-source post-exploitation framework for students, researchers and developers.

A swiss army knife for pentesting networks

Android remote administration tool

Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

JumpServer 堡垒机未授权综合漏洞利用, Exploit for CVE-2023-42442 / CVE-2023-42820 / RCE 2021

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

CVE-2020-17103 adapted for C2 with split-binary SYSTEM callback

Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.

CVE-2024-3400 PAN-OS: OS Command Injection Vulnerability in GlobalProtect