
Tourmaline
Reverse engineering notes, deobfuscated source, IOCs, and YARA rules for the Tourmaline ClickFix Python RAT, covering its DNS tunnel and blockchain…

Reverse engineering notes, deobfuscated source, IOCs, and YARA rules for the Tourmaline ClickFix Python RAT, covering its DNS tunnel and blockchain…

Pupy is an opensource, multi-platform (Windows, Linux, OSX, Android), multi function RAT (Remote Administration Tool) mainly written in python. It…

LSTAR - CobaltStrike Translated to EN

Proof-of-concept exploit for CVE-2021-41730, demonstrating remote command execution in TENDA AC15/AC6 routers via unvalidated formSetIptv()…

Mass Hunting & Exploitation PoC for CVE-2025-55182 & CVE-2025-66478

BIG-IP F5 Remote Code Execution

CVE-2022-22954 VMware Workspace ONE Access free marker SSTI

Shell exploit script for CVE-2019-19781 (Citrix ADC) enabling remote command execution on vulnerable targets with multi-word command support.

🔥 React2Shell Toolkit - CVE-2025-55182 & CVE-2025-66478

CVE-2025-46811

Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain

A new lightweight, hybrid routing mesh protocol for packet radios

Multi-threaded, multi-os/platform (Linux/Windows) c2 server and Windows reverse TCP shell client both written in C.

A PHP backdoor management and generation tool/C2 featuring end to end encrypted payload streaming designed to bypass WAF, IDS, SIEM systems.

Modular multi-language webshell for web post-exploitation with PHP, JSP, and ASPX agents. Features defense evasion, C2 mode, and Python-based core…

A C# Command & Control framework

Multi-threaded Python reverse shell with payload generation, session management, keylogging, screensharing, and persistence for authorized…

Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode…