
sliver
Adversary Emulation Framework

Adversary Emulation Framework

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

Exploit CVE-2024-43468 and CVE-2025-59213 to implant a controlled backdoor into SCCM Management Point's SQL stored procedure, enabling remote SQL…

HTTP/HTTPS interception proxy for testing Windows authentication mechanisms, supporting NTLM, Kerberos, pass-the-hash, pass-the-ticket and relay…

[POC] Asynchronous reverse shell using the HTTP protocol.

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)

Powershell reverse shell using HTTP/S protocol with AMSI bypass and Proxy Aware

Metasploit module that exploits Apache HTTP Server SSRF (CVE-2024-38472) on Windows to reach internal services and achieve remote code execution.

Quicky serve files over http or https using flask.

Python / C# Unmanaged PowerShell based RAT

C# C2 Framework centered around Stage 1 operations

Automates Linux swap analysis to extract user credentials, web form data, WiFi keys, and HTTP authentication during post-exploitation or forensic…

pinky - The PHP mini RAT (Remote Administration Tool)

The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.


PoC to tunnel the Meterpreter reverse HTTP shell over RDP Virtual Channels