
zombieant
Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.

Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.

PE obfuscator with Evasion in mind

TinySHell port to SCTP

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege

DropboxC2C is a post-exploitation agent which uses Dropbox Infrastructure for command and control operations.

PyRat,a rat by python xmlrpc

Windows privilege escalation tool that abuses SeImpersonatePrivilege via indirect syscalls, patching ETW and AMSI to elevate from service account or…

COFF and BOF Loader written in Nim

A PHP Based Tool That Helps You To Manage All Your Backdoored Websites Efficiently.

exe2powershell - exe2bat reborn for modern Windows

Rust-based PoC using Windows fibers to execute in-memory code stealthily, hiding payload stacks from EDR by switching between control and payload…

Revenge-RAT C# Stub - Fixed

Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust.

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

poc for CVE-2025-24252 & CVE-2025-24132

Shellcode injection using the Windows Debugging API

Cobalt Strike Beacon Object File that elevates an active beacon to SYSTEM and grants TrustedInstaller privileges through SetThreadToken token…