
RATel
RAT-el is an open source penetration test tool that allows you to take control of a windows machine. It works on the client-server model, the server…

RAT-el is an open source penetration test tool that allows you to take control of a windows machine. It works on the client-server model, the server…

the only php webshell you need.

In progress persistent download/upload/execution tool using Windows BITS.

Assist reverse tcp shells in post-exploration tasks

A framework for constructing self-spreading binaries

*Proof of concept* Attacks a Windows machine running Windows 7 or later, creating a persistent Backdoor.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.

Post-exploitation platform automating enumeration, privilege escalation, persistence, and C2 operations via reverse/bind shells with cross-platform…

Forge certificates for Active Directory authentication using stolen Certificate Authority private keys, enabling persistent domain access with forged…

C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be…

WIP Post-exploitation framework tailored for hypervisors.

Persistence by writing/reading shellcode from Event Log

Windows COM hijacking persistence tool with search, classic, Task Scheduler, and TreatAs modes. Available as .NET executable and Cobalt Strike BOF…

This repo covers some code execution and AV Evasion methods for Macros in Office documents

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines.…

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.