
dnschan
A remote access trojan over DNS

A remote access trojan over DNS

PowerSploit - A PowerShell Post-Exploitation Framework

Better Remote Access Trojan

some python3 functions to add spreading features to any python backdoor

SS-RAT (Schwarze-Sonne-Remote-Access-Trojan)

Free advanced and modern Windows botnet with a nice and secure PHP panel developed using VB.NET.

WORK IN PROGRESS. RAT written in C++ using Win32 API

A fully featured Windows backdoor that uses email as a C&C server

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox…

Reverse Engineered based on CISA disclosure of new CVE

Objective: Demonstrate the exploitation of the Log4Shell vulnerability (CVE-2021-44228) within a simulated banking application environment.

LlamaStack-RCE: Deterministic Supply Chain Exploitation & Hardening Framework [CVE-2024-50050] Focus on AI Security Research…

CVE-2025-55182 & CVE-2025-66478 proof of concepts

This simple but powerful script will introduce a new type of malware that will turn off the firewall, start an HTTP server, forward its port through…

The FortiGate SSL-VPN pot of gold. CVE-2024-21762 and CVE-2023-27997. 79 working exploit clients. 53 hardware SKUs. 55 FortiOS builds.

[POC] Asynchronous reverse shell using the HTTP protocol.