
FlavorTown
Various ways to execute shellcode

Various ways to execute shellcode

Covert backdoor transmission tool using 802.11 probe request and beacon frames for isolated network attacks. Delivers payloads via HID devices,…

Automating Host Exploitation with AI

A way to delete a locked file, or current running executable, on disk.

Inject .NET assemblies into an existing process

Cobalt Strike Beacon Object File for automated, targeted user surveillance. Triggers screenshots or custom actions when specific window titles (e.g.,…

Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.

A PoC implementation for dynamically masking call stacks with timers.


Single executable reverse SOCKS5 proxy written in Golang.

Windows implant that steals RDP credentials via API hooking (Detours) and DLL injection, capturing usernames and passwords to a file for red-team…

Rust-based PoC using Windows fibers to execute in-memory code stealthily, hiding payload stacks from EDR by switching between control and payload…

Github as C2 Demonstration , free API = free C2 Infrastructure

Abuses Windows Hello from a privileged context to enumerate protectors, decrypt keys, extract PRT/TGT tokens, proxy WebAuthn requests, and dump…

A rust library that allows you to host the CLR and execute dotnet binaries.

PeekABoo tool can be used during internal penetration testing when a user needs to enable Remote Desktop on the targeted machine. It uses PowerShell…

BOF to steal Teams cookies

🛡️ Official AI Security Tool module for CVE-2026-21858 + CVE-2025-68613 (n8n "Ni8mare" Unauthenticated Arbitrary File Read & Expression Injection…