
reverse-shell-generator
Web-based reverse shell generator supporting multiple payload formats, encoding, listener integration, and raw download mode for penetration testing…

Web-based reverse shell generator supporting multiple payload formats, encoding, listener integration, and raw download mode for penetration testing…

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

Generates obfuscated shellcode embedded in polyglot BMP images for payload delivery and evasion. Uses PowerShell to download and execute the image as…

Converts Windows EXE files into DLLs that export the original entry point, enabling DLL-style loading of arbitrary executables. Supports both 32-bit…

A modern 32/64-bit position independent implant template

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

Manipulates compiled executables (.exe/DLL) to evade EDRs by removing IoC strings, inflating file size, and cloning code-signing certificates for…

A repository of Windows Shellcode runners and supporting utilities. The applications load and execute Shellcode using various API calls or techniques.

Cross-platform C2 framework using Notion API for stealthy command execution, port scanning, privilege escalation, file download, and shellcode…

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

Threadless Process Injection using remote function hooking.

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

A fully featured backdoor that uses Twitter as a C&C server

Offensive payload creation framework for executing VBA macros in memory, featuring EDR unhooking, ETW patching, and process injection to deliver…

Windows code injection PoC that abuses the fork API to execute ntdll-based shellcode in a forked process and bypass EDRs.

Exploit for Drupal v7.x + v8.x (Drupalgeddon 2 / CVE-2018-7600 / SA-CORE-2018-002)

Simple & Powerful PowerShell Script Obfuscator