
Medusa
🐈Medusa是一个红队武器库平台,目前包括XSS平台、协同平台、CVE监控、免杀生成、DNSLOG、钓鱼邮件、文件获取等功能,持续开发中

🐈Medusa是一个红队武器库平台,目前包括XSS平台、协同平台、CVE监控、免杀生成、DNSLOG、钓鱼邮件、文件获取等功能,持续开发中

An XSS exploitation command-line interface and payload generator.

DNS-Shell is an interactive Shell over DNS channel

Self contained htaccess shells and attacks

Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.

BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency,…

A Bash script that downloads and unzips scripts that will aid with privilege escalation on a Linux system.

A python reverse shell that uses DNS as the c2 channel


Malicious WMI Events using PowerShell

PwnSTAR (Pwn SofT-Ap scRipt) - for all your fake-AP needs!


outis is a custom Remote Administration Tool (RAT) or something like that. It was build to support various transport methods (like DNS) and platforms…

DNS-Persist is a post-exploitation agent which uses DNS for command and control.

[NEW] : Mega Bot ☣ Scanner & Auto Exploiter

Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.

A blind XSS detection and XSS data capture framework

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)