
PHP-8.1.0-dev-Backdoor
PHP 8.1.0-dev User-Agentt Backdoor Remote Code Execution (RCE)

PHP 8.1.0-dev User-Agentt Backdoor Remote Code Execution (RCE)

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Adversary simulation and Red teaming platform with AI

Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end…

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

Mythic C2 agent targeting Linux and Windows hosts written in Rust

Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework


KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

FruityC2 is a post-exploitation (and open source) framework based on the deployment of agents on compromised machines. Agents are managed from a web…

Exploit for the vulnerability CVE-2024-43044 in Jenkins

A cross-platform implant written in Nim

Weaponize signed .NET ClickOnce applications for initial access by hijacking a dependency DLL via AppDomainManager injection and loading a C# port of…