
quasibot
complex webshell manager, quasi-http botnet.

complex webshell manager, quasi-http botnet.

Herramienta para evadir disable_functions y open_basedir

Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

Convert shellcode into :sparkles: different :sparkles: formats!

A C2 post-exploitation framework

A shellcode function to encrypt a running process image when sleeping.

Dynamic shellcode loader with sophisticated evasion capabilities

C# Reflective loader for unmanaged binaries.


C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

Patching ROP-encoded shellcodes into PEs

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

Apply a divide and conquer approach to bypass EDRs

Windows User-Mode Shellcode Development Framework (WUMSDF)

Simple executable generator with encrypted shellcode.

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Exploit for CVE-2018-4233, a WebKit JIT optimization bug used during Pwn2Own 2018

poc for CVE-2025-24252 & CVE-2025-24132