
Phoenix-Framework
Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.

Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.

Python Flask web server for capturing, processing, and logging encoded/encrypted payloads and tar archives, designed for penetration testers and red…

Updated version of PowerDNS by @domchell. Adds support for transfers over DNS A records and a few other useful features.

OSINT tool to search, parse and dump only the open Elasticsearch and MongoDB directories that have the data you care about exposing

Bypassing EDR's with stealthy c++ telegram Bot and Telegram itself as C2 interface !

Google Drive, OneDrive and Youtube as covert-channels - Control systems remotely by uploading files to Google Drive, OneDrive, Youtube or Telegram

PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10 version…

Blue Pigeon is a Bluetooth-based data exfiltration and proxy tool to enable communication between a remote Command and Control (C2) server and a…

A simple HTTP server for delivering and exfiltrating files/data during, for example, CTFs.

Data exfiltration and covert communication tool

Full-spectrum Linux adversary simulation platform with kernel-level stealth, C2 beaconing, privilege escalation, credential harvesting, lateral…

Phantom Keylogger is an advanced, stealth-enabled keystroke and visual intelligence gathering system.

Free advanced and modern Windows botnet with a nice and secure PHP panel developed using VB.NET.

This simple but powerful script will introduce a new type of malware that will turn off the firewall, start an HTTP server, forward its port through…

Scan for open S3 buckets and dump

Red Team tool for covert file exfiltration via Bluetooth audio transmission, encoding binary data into FLAC signals to bypass EDR, XDR, and DLP…

Forensic toolkit and agent skills for investigating Rails Active Storage/libvips CVE-2026-66066: detects crafted blob indicators, exposure windows,…

A project created with an aim to emulate and test exfiltration of data over different network protocols.