
PEzor
Pack shellcode and PE executables into evasive payloads with anti-debug, unhooking, syscall, and memory fluctuation techniques for red-team…

Pack shellcode and PE executables into evasive payloads with anti-debug, unhooking, syscall, and memory fluctuation techniques for red-team…

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

PowerShell wrapper bundling 50+ C# offensive security tools for post-exploitation, privilege escalation, credential dumping, lateral movement, and…

This tool will setting up your backdoor/rootkits when backdoor already setup it will be hidden your spesisifc process,unlimited your session in…

evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

Cobalt Strike extension for post-exploitation persistence using SharpStay .NET assembly. Provides GUI-driven persistence via Registry keys, Scheduled…

WePWNise generates architecture independent VBA code to be used in Office documents or templates and automates bypassing application control and…

All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities

morphHTA - Morphing Cobalt Strike's evil.HTA

application server attack toolkit

Hacking systems with the automation of PasteJacking attacks.

A better version of Xencrypt.Xencrypt it self is a Powershell runtime crypter designed to evade AVs.

spring-cloud / spring-cloud-function,spring.cloud.function.routing-expression,RCE,0day,0-day,POC,EXP,CVE-2022-22963


C# tool that generates malicious VBA macros with shellcode injection, VBA purging, and sandbox detection for red team operations.

Python and Metasploit exploit for Oracle WebLogic WLS-WSAT deserialization vulnerability (CVE-2017-10271) with detection scanning and remote code…

CVE-2018-8174 - VBScript memory corruption exploit.

PrintNightMare LPE提权漏洞的CS 反射加载插件。开箱即用、通过内存加载、混淆加载的驱动名称来ByPass Defender/EDR。