
PyPsPipeJack
Python implementation of OpenPsPipeJack

Python implementation of OpenPsPipeJack

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Exploits WordPress pre-auth XSS (CVE-2026-64638) to achieve remote code execution, installing an AES-encrypted backdoor webshell with persistence,…

Full walkthrough of HTB's Reactor machine — exploit CVE-2025-55182 to gain a shell, then get root via an exposed Node.js debugger. Step-by-step with…

Exploits CouchDB CVE-2017-12635/12636 for privilege escalation and RCE, then provides an interactive shell with command execution, database browsing,…

A basic emulation of an "RPC Backdoor"

Asynchronous RDP client for Python (headless)

Use dropbear over wireguard.

A third-party Gopher Assassin for the Havoc Framework.

Modern tactical exploitation toolkit.

🖥️ P2P Remote Desktop - Portable peer-to-peer remote desktop with no installation required.

Single executable reverse SOCKS5 proxy written in Golang.

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

Offensive Lua.


Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.

psexecsvc - a python implementation of PSExec's native service implementation