
metasploit-framework
Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

C# host-survey tool for offensive and defensive security, performing extensive safety checks on Windows systems including user, system, and network…

UEFI bootkit for Windows with Secure Boot bypass, kernel-level persistence, and encrypted HTTPS C2. Features HVCI/UAC bypass, API hooking, and…

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines.…

Windows-based remote access trojan (RAT) for covert system control, payload delivery, and data exfiltration. Intended for authorized security…

HTTP-based remote access tool with DLL injection, process hollowing, and system hooking for persistent control, screen monitoring, file exfiltration,…

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

Native Windows remote access tool with stealth client, reflective DLL injection, keylogger, Chrome password recovery, reverse shell, file system…

Windows Local Privilege Escalation via CdpSvc service (Writeable SYSTEM path Dll Hijacking)

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

Shell script for automated collection and analysis of macOS forensic artifacts, including persistence enumeration, unified logs, and file system…

Builds a malicious DLL that abuses Windows Task Scheduler's DLL search order to execute a script as SYSTEM during local privilege escalation.

Stealth-enabled keystroke and visual intelligence gathering system for authorized red team operations. Features persistent surveillance, C2 tunnel,…

This is a keylogger that collects all the data and e-mail it in a set time with system information which includes device S/N and hardware specs,…

Windows persistence technique using AddMonitor to load a malicious DLL with SYSTEM privileges, enabling remote C2 via Meterpreter.

Remote Access Trojan (RAT) providing covert command-and-control, payload delivery, and post-exploitation capabilities for targeted system access and…

Telegram bot-based C2 framework for remote system control, file exfiltration, screen/webcam capture, and service enumeration with stealthy deployment.