
xsser
From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras

A stealthy Python based Windows backdoor that uses Github as a command and control server

Windows x64 handcrafted token stealing kernel-mode shellcode

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

Automated DLL Sideloading Tool With EDR Evasion Capabilities


A WebKit exploit using CVE-2018-4441 to obtain RCE on PS4 6.20.

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

A Nim implementation of reflective PE-Loading from memory

Executes position independent shellcode from an encrypted zip

Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)

micr0shell is a Python script that dynamically generates Windows X64 PIC Null-Free reverse shell shellcode.

Golang reverse/bind shell generator

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

DNS-Persist is a post-exploitation agent which uses DNS for command and control.

indirect syscalls for AV/EDR evasion in Go assembly

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

A technique of hiding malicious shellcode via Shannon encoding.