
TeamsImplant
Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

Antivirus evasion project

A fully featured backdoor that uses Twitter as a C&C server

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

Python exploit for UnrealIRCd 3.2.8.1 backdoor (CVE-2010-2075) delivering a reverse shell via Netcat listener.

A fully featured Windows backdoor that uses Gmail as a C&C server

WORK IN PROGRESS. RAT written in C++ using Win32 API

Bash poc for CVE-2022-1609 WordPress Weblizar Backdoor

A stealthy Python based Windows backdoor that uses Github as a command and control server

Meterpreter auto exploit program

Work in Progress. RAT written in C++ using wxWidgets

Python exploit for CVE-2023-3519 targeting Citrix ADC with custom NASM shellcode, PHP backdoor deployment, and SUID privilege escalation.

Yet Another PHP Shell - The most complete PHP reverse shell

A fully featured Windows backdoor that uses email as a C&C server

Python exploit for vsFTPd backdoor vulnerability (CVE-2011-2523) using Pwntools for remote code execution against target IP and port.

Python exploit for vsFTPd 2.3.4 backdoor (CVE-2011-2523) that triggers a hidden shell on port 6200 via a crafted username, enabling remote command…