
SharpStay
.NET tool for installing Windows persistence via registry keys, scheduled tasks, services, WMI events, COM hijacks, and LNK backdoors, supporting…

.NET tool for installing Windows persistence via registry keys, scheduled tasks, services, WMI events, COM hijacks, and LNK backdoors, supporting…

.NET Project for performing Authenticated Remote Execution

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

Documents Exfiltration project for fun and educational purposes

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

Cobalt Strike Malleable C2 Design and Reference Guide

BOF POC of the DSCourier project / invoking WinGet via COM

POC for utilizing wikipedia API for Command and Control

Penetration testing assessment of a vulnerable IIS 6.0 WebDAV server, demonstrating reconnaissance, enumeration, exploitation (CVE-2017-7269), and…

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

A fully featured backdoor that uses Twitter as a C&C server

A fully featured Windows backdoor that uses Gmail as a C&C server

DarkAgent Remote Administration Tool RAT by DragonHunter

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

A simple C2 Framework written in modern C++

A PoC backdoor that uses Gmail as a C&C server

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…