
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

React2Shell Exploitation Tool (CVE-2025-55182)

A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.

CVE-2023-24055 PoC (KeePass 2.5x)

A HTA shell to assist with breakout assessments.

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

UEFI GRUB2 bootkit that installs a pre-boot networked implant via NVRAM boot option, chainloads a UKI, executes a dracut payload, and kexecs the…

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

Windows Remote-Access-Trojan

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

My experiments in weaponizing Nim (https://nim-lang.org/)

Sinister is Windows/Linux Keylogger Generator which sends key-logs via email with other juicy target info

FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.

In progress persistent download/upload/execution tool using Windows BITS.

CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.