


A third-party Gopher Assassin for the Havoc Framework.

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

PoC RAT using the sneaky-creeper data exfiltration library

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Replicable Blueprint for advanced DDoS Purple Teaming, engineered for the threat landscape. It integrates a Red Elite Teaming offensive…

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Reverse engineering notes, deobfuscated source, IOCs, and YARA rules for the Tourmaline ClickFix Python RAT, covering its DNS tunnel and blockchain…

The Havoc Framework

C# remote access trojan (RAT) implant for the Caldera adversary emulation framework, enabling post-exploitation command and control on Windows…

[POC] Asynchronous reverse shell using the HTTP protocol.

An open-source post-exploitation framework for students, researchers and developers.

RAT / Botnet Simulator for pentest / education

Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.

exploit for CVE-2026-42945

Poc for CVE-2026-20980, CVE-2026-20981, CVE-2026-20982

Spring Boot Log4j - CVE-2021-44228 Docker Lab

Payload injector and HID emulator for Android like Hak5 and rubber ducky