
kimi
Script to generate malicious debian packages (debain trojans).

Script to generate malicious debian packages (debain trojans).

This is a proof-of-concept of malicious software running inside of ModSecurity WAF.

This room is based on exploiting the notorious Log4j vulnerability ( CVE-2021-44228), also referred to as the Log4Shell. The weakness enables…

CVE-2025-26633 (CVSS 7.8) – Zero-day MMC .msc EvilTwin LPE actively exploited by Water Gamayun APT. PoC creates local admin via malicious MSC file on…

DKMC - Dont kill my cat - Malicious payload evasion tool

CVE-2024-36842, Creating Persistent Backdoor on Oncord+ android/ios car infotaiment using malicious script!

🔥 CHAOS is a free and open-source Remote Administration Tool that allow generate binaries to control remote operating systems.

A repository of Windows Shellcode runners and supporting utilities. The applications load and execute Shellcode using various API calls or techniques.

DBC2 (DropboxC2) is a modular post-exploitation tool, composed of an agent running on the victim's machine, a controler, running on any machine,…

Malicious WMI Events using PowerShell

Beacon Object File implementation of Event Viewer deserialization UAC bypass

PHP 7 and safe-build Update of the popular C99 variant of PHP Shell.

Generate a proxy dll for arbitrary dll

Orwell is a RAT and Botnet designed as a trio of programs.

Generate Proxy DLLs in Rust

A version of CVE-2017-0213 that I plan to use with an Empire stager

Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by utilizing…

A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.