
phpsploit
Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

Adversary Emulation Framework

Modular penetration testing platform that enables you to write, test, and execute exploit code.

link is a command and control framework written in rust

CVE-2021-31166: exploitation with Powershell, Python, Ruby, NMAP and Metasploit.

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

Cloud dead-drop C2 framework — RSA-4096 + AES-256-GCM, 5 cloud providers, Rust-only agents, P2P mesh, persistence engine, credential harvesting

A simplified but capable penetration testing framework with exploit library, payload creation, and interactive console for authorized security testing

BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel

Crowdstrike Falcon 0day Privilege Escalation Vulnerability

A little tool to play with Windows security

Framework to create, generate, and embed APK payloads for Android penetration testing, leveraging Metasploit for exploitation and Apktool for…

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

CVE-2020-17103 adapted for C2 with split-binary SYSTEM callback

React2Shell Exploitation Tool (CVE-2025-55182)

LLM-driven generator for Mythic Agents, Payload-Type and C2 Profiles.