
zig-pe
Reflective PE loader written in Zig. Loads and executes native and .NET PE files directly from memory.

Reflective PE loader written in Zig. Loads and executes native and .NET PE files directly from memory.

Orwell is a RAT and Botnet designed as a trio of programs.

PowerShell-based command and control framework using website-hosted payloads for persistent remote access and post-exploitation on Windows systems.

A little tool to play with Kerberos.

Generate Proxy DLLs in Rust

Bifrost C2. Open-source post-exploitation using Discord API



Quicky serve files over http or https using flask.

PoC-Malware-TTPs

Code Execution & Persistence in NETWORK SERVICE FAX Service

freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package

Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

AD CS exploitation related stuff goes here

NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection

CVE-2020-1048 bypass: binary planting PoC

Python Remote Access Tool

Pre-auth RCE PoC for WordPress core — chains CVE-2026-63030 (REST /batch/v1 route-confusion desync) with CVE-2026-60137 (author__not_in SQLi) into an…