
SecureForce
A simplified but capable penetration testing framework with exploit library, payload creation, and interactive console for authorized security testing

A simplified but capable penetration testing framework with exploit library, payload creation, and interactive console for authorized security testing

Provides a bash workaround script to mitigate CVE-2026-31431, preventing remote code execution via copy.fail exploit. Includes usage instructions for…

基于Java实现的Shellcode加载器

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Various ways to execute shellcode

A third-party Gopher Assassin for the Havoc Framework.


Modern PIC implant for Windows (64 & 32 bit)

🧙♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications

Windows User-Mode Shellcode Development Framework (WUMSDF)

Get your data from the resource section manually, with no need for windows apis


PCShare是一款强大的远程控制软件,可以监视目标机器屏幕、注册表、文件系统等。

Python-based exploit for CVE-2019-2725 (Oracle WebLogic) providing command execution and webshell upload targeting versions 10.3.6 and 12.1.3.

React Server Components 远程代码执行漏洞(CVE-2025-55182)

CVE-2025-55182漏洞检测工具