
Citadel
Collection of pentesting scripts

Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938…

Payload Generation Framework

A tool to abuse Exchange services

Self contained htaccess shells and attacks

A simple shell code encryptor/decryptor/executor to bypass anti virus.

complex webshell manager, quasi-http botnet.

SMBGhost (CVE-2020-0796) Automate Exploitation and Detection

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

Assist reverse tcp shells in post-exploration tasks

Simple executable generator with encrypted shellcode.

CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same network to gain…

Use YARA rules on Time Travel Debugging traces

Yet Another PHP Shell - The most complete PHP reverse shell

Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and environment…

A fully featured Windows backdoor that uses email as a C&C server

Work in Progress. RAT written in C++ using wxWidgets

CVE-2020-1938 / CNVD-2020-1048 Detection Tools