
Heroinn
A cross platform C2/post-exploitation framework.

A cross platform C2/post-exploitation framework.

PyIris is a modular remote access trojan toolkit written in python targeting Windows and Linux systems.

a open source remote administrator tool

Injects shellcode into memory and tunnels Meterpreter over SSH to mask C2 communications as normal SSH traffic, enabling stealthy remote access and…

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

A python reverse shell that uses DNS as the c2 channel

Interactive shell over DNS channel using Python server and PowerShell payload. Supports direct and recursive modes for covert command-and-control…

An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memory.

A small reverse shell for Linux & Windows

A tool to transform Chromium browsers into a C2 Implant

Lightweight C++ RAT for Windows with remote command execution via CMD/Powershell, keylogging, script execution, auto-install persistence, and…

Cross-platform TCP reverse shell with TLS encryption, certificate pinning, shellcode injection, and meterpreter staging for red team operations.

A light-weight first-stage C2 implant written in Nim (and Rust).

Stealthy, code-golfed PHP webshell family with authentication support and undetectable payload delivery for remote command execution via HTTP.

Exploit for CVE-2019-2725 (WebLogic wls9-async) with command echo back, detection script, and payload generation for versions 10.3.6 and 12.1.3.

Multiplatform HTTP reverse shell providing a shell-like interface over HTTP, with file upload/download, command history, auto-reconnection, and sudo…

WebSocket-based C2 framework with Python controller and .NET agent, supporting interactive shell, file transfer, and multiple stager types…

Cobalt Strike BOF for spawning sacrificial processes with Arbitrary Code Guard, BlockDll, and PPID spoofing to inject shellcode and execute payloads…