
AggressorScripts
Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources

Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources

C# tool for establishing Windows persistence via multiple techniques including scheduled tasks, WMI events, startup folders, and registry hijacking,…

Creation of multiple Malware tools consisting of evasion, enumeration and exploitation

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

Python-based antivirus evasion tool generating undetectable executables from msfvenom payloads with advanced techniques like junkcode injection,…

Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.

Python logger with multiple features.

Exploit systems using older WinRAR without knowing their username (unlike other projects)

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Remote Code Execution Exploit for Langflow (CVE-2025-3248) - [ By S4Tech ]

Writeup and code for CVE-2025-11492, CVE-2025-11493 - RCE in ConnctWise Automate RMM via Adversary-in-the-Middle

C2/post-exploitation framework