
C3
Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive…

Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive…

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

Modular Python3 attack framework for automating exploitation of SIEM platforms (Splunk, Graylog, OSSIM, QRadar, McAfee) via credential theft, payload…

Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by utilizing…

Adversary Emulation Framework

Test & Analyze the CVE-2025-55182 vulnerability within Next.js Server Actions

Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

A complete framework for exploiting the vulnerability CVE-2025-55182

Demonstrable Proof of Concept Exploit for Spring4Shell Vulnerability (CVE-2022-22965)

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

poc for CVE-2025-24252 & CVE-2025-24132

BYOVD exploitation framework for CVE-2022-22077 targeting RTCore64.sys. Demonstrates kernel token theft, privilege escalation to SYSTEM, and C2…

A wrapper for MSFvenom that allows for easy generation of payloads

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

A listener profile for the Mythic C2 framework that utilizes AI vendors file API's

FruityC2 is a post-exploitation (and open source) framework based on the deployment of agents on compromised machines. Agents are managed from a web…