
ParsingPeas
HTML parser for PEAS output with additional features

HTML parser for PEAS output with additional features

Arcane is a simple script designed to backdoor iOS packages (iphone-arm) and create the necessary resources for APT repositories.

Excalibur is an Eternalblue exploit payload based "Powershell" for the Bashbunny project.

Open-source multi-purpose remote access tool for Microsoft Windows

Customizable Stage0 C2 framework with C and Rust agent templates, a Flask backend, and a React dashboard for building and operating your own C2…

find dll base addresses without PEB WALK


A variation of ProcessOverwriting to execute shellcode on an executable's section

Abusing the win32k.sys kernel callback mechanism for arbitrary code execution

Created a VERY SIMPLE remote access Trojan that will establish administrative control over any windows machine it compromises.

Windows Remote Access Trojan (RAT)

A LKM rootkit targeting 4.x and 5.x kernel versions which opens a backdoor that can spawn a reverse shell to a remote host, launch malware and more.

Educational remote administration tool for learning RAT concepts, featuring file transfer, screenshot capture, system monitoring, and webcam access…

How to spoof the command line when spawning a new process from C#.

Linux persistence toolkit with 11 modules for SSH key backdoors, cronjobs, systemd services, LKM rootkits, and LD_PRELOAD privilege escalation.…

A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (Draugr)

COM Windows Persistence Technique

Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.