
iodine
Tunnel IPv4 data through DNS servers to bypass firewall restrictions and provide covert network access for penetration testing.

Tunnel IPv4 data through DNS servers to bypass firewall restrictions and provide covert network access for penetration testing.

SambaCry exploit and vulnerable container (CVE-2017-7494)

Authenticated remote code execution exploit for eXtplorer 2.1.15 on Joomla. Python-based tool targeting insecure permissions to gain shell access.

RAT-el is an open source penetration test tool that allows you to take control of a windows machine. It works on the client-server model, the server…

Altenergy Power System Control Software set_timezone RCE Vulnerability (CVE-2023-28343)

Fully transparent SSH, HTTPS, Kubernetes, database and RDP/VNC bastion/PAM that doesn't need additional client-side software

Exploit for CVE-2022-46169 in Cacti, enabling unauthenticated remote code execution via crafted HTTP requests to remote_agent.php.

Python exploit for CVE-2025-69985 targeting FUXA SCADA software. Sends crafted JSON payload to /api/runscript endpoint to bypass authentication and…

Direct Memory Access (DMA) Attack Software

Embedded systems C2 software written in C/C#

Python botnet and backdoor

🖥️ P2P Remote Desktop - Portable peer-to-peer remote desktop with no installation required.

Source code for a BPFDoor backdoor controller supporting TCP, UDP, ICMP, and HTTPS covert communication channels with magic packet activation,…

Generates TeamViewer ID and password payloads for remote access to target machines. Combines executable generation with third-party remote control…

Exploit implementation for Android Stagefright vulnerability CVE-2015-3864, enabling remote code execution and privilege escalation on Android 5.1.1…

PoC Authentication Bypass to RCE to Exploit CVE-2025-31161

CVE-2022-36446 - Webmin 1.996 Remote Code Execution

Lightweight C2 framework written in Nim for generating implants, managing listeners, and executing tasks via TCP/HTTP with a loot system for…