
GoPurple
Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…


Pack shellcode and PE executables into evasive payloads with anti-debug, unhooking, syscall, and memory fluctuation techniques for red-team…


An Interactive Binary Patching Plugin for IDA Pro

A Ruby framework designed to aid in the penetration testing of WordPress systems.

This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

PowerSploit - A PowerShell Post-Exploitation Framework

Some setup scripts for security research tools.

The Havoc Framework

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux

K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell…

PEDA - Python Exploit Development Assistance for GDB

Windows memory hacking library

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…