
Red-Team-Infrastructure-Wiki
Wiki to collect Red Team infrastructure hardening resources

Wiki to collect Red Team infrastructure hardening resources

Proof-of-concept exploit for CVE-2025-2563, demonstrating the vulnerability and providing reproduction steps for security researchers.

The exploit samples database is a repository for **RCE** (remote code execution) exploits and Proof-of-Concepts for **WINDOWS**, the samples are…

Adversary Emulation Framework

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

Obfuscates PowerShell and JavaScript scripts using tree-sitter-based parsing with multiple configurable impostor profiles for stealth, size, and…

A proof of concept for Joomla's CVE-2015-8562 vulnerability (Object Injection RCE)

Proof-of-concept exploit for arbitrary code execution through eval() injection in a ham radio programming application, including malicious .itm/.img…

Cloud-native C2 framework using cloud storage as dead-drop communication channel

Automated deployment tool for CVE-2024-31317 PoC on Android 9-13, enabling privilege escalation via Zygote injection and reverse shell execution.

Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2

Standalone exploit for MS10-059 vulnerability in Windows Canonical Display Driver, enabling local privilege escalation.

A simplified but capable penetration testing framework with exploit library, payload creation, and interactive console for authorized security testing

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel

Educational trojan simulator for cybersecurity training, simulating phishing attacks with social engineering, system reconnaissance, anti-sandbox…

Crystal Palace PICO loader for Sliver C2 dual-layer AMSI bypass, ETW silencing, AES-256-CBC encrypted payloads, 6 delivery variants