
PowerShell-for-Hackers
This repository is a collection of powershell functions every hacker should know

This repository is a collection of powershell functions every hacker should know

Venom - A Multi-hop Proxy for Penetration Testers

pwncat - netcat on steroids with Firewall, IDS/IPS evasion, bind and reverse shell, self-injecting shell and port forwarding magic - and its fully…

Open source pre-operation C2 server based on python and powershell

Nebula is a cloud C2 Framework, which at the moment offers reconnaissance, enumeration, exploitation, post exploitation on AWS, but still working to…

Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply chain attacks, test prompt injection…

Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic look legit.

A unified console to perform the "kill chain" stages of attacks.

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

Just a repo of random Python scripts to get pentesters started with the Python language on engagements.

🔒 Modern C2 Platform with Cloudflare Tunnel Integration | WinRM & SSH Remote Management | Real-time Terminal & Remote Desktop | Built with FastAPI &…

Responsive Command and Control System

Yet Another PHP Shell - The most complete PHP reverse shell

WIP Post-exploitation framework tailored for hypervisors.

RCE detection and confirmation toolkit that tests URLs or captured HTTP requests for command injection, SSTI, blind and OOB paths, returning tiered…

Rosemary: Cross-platform kernel-level pivoting over QUIC. No TUN/TAP. No proxychains. No proxy settings.

☄️ Mass reconnaissance & exploitation framework for Apache Solr CVE-2026-44825 — Velocity template injection to RCE

Unauthenticated RCE in dedoc/scramble — PoC, Nmap NSE & Nuclei template.