
RockLoader-source
RockLoader AKA Bart Malware control panel source

RockLoader AKA Bart Malware control panel source

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automation.

POC Highlighting Obfuscation Techniques used by FIN threat actors based on cmd.exe's replace functionality and cmd.exe/powershell.exe's stdin command…

Agent-based ransomware simulation toolkit for controlled detection testing across Windows endpoints and network assets, with a cross-platform…

Berry Sentinel v5.0 — Advanced behavioral C2 and reverse shell detector for Linux/Windows/Unix systems. Features real-time connection analysis,…

Educational exploit for CVE-2022-30190 (Follina) demonstrating MSDT remote code execution via malicious Office documents, with detection and…

BlackLotus UEFI Windows Bootkit

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

PowerShell Remote Download Cradle Generator & Obfuscator

Cmd.exe Command Obfuscation Generator & Detection Test Harness

A utility to safely generate malicious network traffic patterns and evaluate controls.

SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using…

Run Powershell without software restrictions.

An interactive shell to spoof some LOLBins command line

A BYOSI (Bring-Your-Own-Script-Interpreter) Rapid Payload Deployment Toolkit

Is this IP a C2 server?

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.