
Havoc
The Havoc Framework

On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.

SharpSploit is a .NET post-exploitation library written in C#

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Python antivirus evasion tool

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Exploit for Drupal v7.x + v8.x (Drupalgeddon 2 / CVE-2018-7600 / SA-CORE-2018-002)

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

indirect syscalls for AV/EDR evasion in Go assembly

exploitdb // The official Exploit-Database repository

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

Golang reverse/bind shell generator

Assist reverse tcp shells in post-exploration tasks

DNS-Persist is a post-exploitation agent which uses DNS for command and control.

Hijacks code execution via overwriting Control Flow Guard pointers in combase.dll

A variation of ProcessOverwriting to execute shellcode on an executable's section

A collection of various and sundry code snippets that leverage .NET dynamic tradecraft