
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Open source Windows x64 PE packer and crypter. Compresses and encrypts executables with a custom virtual machine into a self extracting stub.

Fast TCP/UDP tunnel over HTTP with SSH encryption, supporting reverse port forwarding, SOCKS5 proxy, and client authentication for secure network…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

A collection of awesome penetration testing resources and tools

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

Rust Weaponization for Red Team Engagements.

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

AV evading cross platform Backdoor and Crypter Framework with a integrated lightweight webUI

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

IFRIT is an AI-powered reverse proxy that intercepts incoming requests in real time, classifying each one as legitimate or malicious. Legitimate…

A simple remote tool in C#.

A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.

Spoof file icons and extensions in Windows

Cross-platform syscall-powered implant & C2 — direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No winapi layer.

THorse is a RAT (Remote Administrator Trojan) Generator for Windows/Linux systems written in Python 3.

Runtime tracer for Node.js malware analysis that hooks core modules, logs calls, spoofs anti-analysis checks, and captures file writes and HTTP…