
SMBRat
A Windows Remote Administration Tool in Visual Basic with UNC paths

A Windows Remote Administration Tool in Visual Basic with UNC paths

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

C2 Powershell Command & Control Framework with BuiltIn Commands

CVE-2025-8088 exploitation chain + Quasar C2 multi-stage payload delivery

IP obfuscator made to make a malicious ip a bit cuter

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

The Browser Exploitation Framework Project

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Multi-purpose WiFi penetration testing toolkit for M5Stack devices. Performs network scanning, evil-twin attacks, deauthentication, captive portal…

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…

Payload Generation Framework

evilginx3 + gophish

Use a Fake image.jpg to exploit targets (hide known file extensions)

Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP…