

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Excel Macro Document Reader/Writer for Red Teamers & Analysts

Embed a reverse shell in Notion pages using the Notion API as a proxy, enabling stealthy remote shell sessions with encrypted and authenticated…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.

Browser-based C2 tunnel that exfiltrates payloads through Firefox's cookie.sqlite and auto-submitting HTML/JS, enabling stealthy firewall bypass for…

Proof of concept for CVE-2024-24590

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

Forblaze - A Python Mac Steganography Payload Generator

C# tool that generates malicious VBA macros with shellcode injection, VBA purging, and sandbox detection for red team operations.


An on-the-fly Powershell script obfuscator meant for red team engagements. Built out of necessity.