
slot2
UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles

Free advanced and modern Windows botnet with a nice and secure PHP panel developed using VB.NET.

CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

halo cms plugin 1-request rce from a url, PoC + exploit chain

A little tool to play with Windows security

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Decrypted content of eqgrp-auction-file.tar.xz

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Various tips & tricks

My experiments in weaponizing Nim (https://nim-lang.org/)

USB Army Knife – the ultimate close access tool for penetration testers and red teamers.

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

Install and run Metasploit Framework 6 on Android via Termux with automated setup, payload generation (msfvenom), and full msfconsole access for…

Decrypted content of odd.tar.xz.gpg, swift.tar.xz.gpg and windows.tar.xz.gpg

Research code & papers from members of vx-underground.