
wshlient
A simple tool to interact with web shells and command injection vulnerabilities

A simple tool to interact with web shells and command injection vulnerabilities

PHP-based web shell uploader for penetration testing, enabling file upload and remote command execution on vulnerable web servers.

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…


Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched

A fully featured Windows backdoor that uses Gmail as a C&C server

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and remote…

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

pinky - The PHP mini RAT (Remote Administration Tool)


PostShell - Post Exploitation Bind/Backconnect Shell

Windows memory-forensics and threat hunting tool that scans live process memory for malicious patterns, injection techniques, and reflectively loaded…

🌒 Shell command obfuscation to avoid detection systems

Modern PIC implant for Windows (64 & 32 bit)