
blackpill
A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

Kernel Exploit for CVE-2016-6187 (Local Privilege Escalation)

Magento APSB25-94 Unauthenticated File Upload to RCE (CVE-2026-XXXX) - Eval Shell + Probe Scanner

Linux kernel local privilege escalation exploit for CVE-2017-16994, leveraging null pointer dereference and mmap_min_addr bypass to achieve root…

Web-based reverse shell generator supporting multiple payload formats, encoding, listener integration, and raw download mode for penetration testing…

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

A modern 32/64-bit position independent implant template

A repository of Windows Shellcode runners and supporting utilities. The applications load and execute Shellcode using various API calls or techniques.

A fully featured backdoor that uses Twitter as a C&C server

Converts Windows EXE files into DLLs that export the original entry point, enabling DLL-style loading of arbitrary executables. Supports both 32-bit…

Exploit for Drupal v7.x + v8.x (Drupalgeddon 2 / CVE-2018-7600 / SA-CORE-2018-002)

Injects shellcode into memory and tunnels Meterpreter over SSH to mask C2 communications as normal SSH traffic, enabling stealthy remote access and…

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

ReverShellGenerator - A tool to generate various ways to do a reverse shell