
Clematis
Converts PE files (EXE/DLL) into position-independent shellcode with optional LZNT1 compression and obfuscation, supporting x86/x64, .NET, and Go…

Converts PE files (EXE/DLL) into position-independent shellcode with optional LZNT1 compression and obfuscation, supporting x86/x64, .NET, and Go…

Weaponized exploit and proof-of-concept repository for Windows kernel and user-mode exploits, featuring ROP chains, ASLR bypass, and privilege…

PHP-based webshell providing file management, interactive terminal, reverse shell, PHP code execution, and self-encrypting payload generation for…

DNS-based post-exploitation agent with persistence mechanisms, pseudo-interactive shell, and shellcode injection for covert command and control.

micr0shell is a Python script that dynamically generates Windows X64 PIC Null-Free reverse shell shellcode.

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

A simple ptrace-less shared library injector for x64 Linux

A tool to generate obfuscated one liners to aid in penetration testing

Dynamically extracts fresh syscall stubs from ntdll.dll to evade signature-based detection, with a shellcode execution template for Nim-based…

Java-based exploit for CVE-2022-26134 that injects a Godzilla webshell into Confluence servers, enabling remote code execution with password and key…

Single-file Windows exploit for CVE-2019-0708 (BlueKeep) that executes a reverse shell with SYSTEM privileges via RDP, statically compiled with…

An architecture-agnostic ELF file flattener for shellcode

An in-depth approach to obfuscating the individual components of a PowerShell payload whether you're on Windows or Kali Linux.

Shellcode injection using the Windows Debugging API

Proof-of-concept framework for CVE-2025-24252 and CVE-2025-24132, providing mDNS crash trigger and heap overflow reverse shell with multiple payload…

For pentesters who don't wanna leave their terminals.

Golang reverse/bind shell generator