
Maverick
Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

PHP-based remote administration tool with encrypted C2 communication, built-in agent generator, and proxy support for post-exploitation after web…

Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

A tool to abuse Exchange services


EXOCET - AV-evading, undetectable, payload delivery tool

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

HTTP-based remote access tool with DLL injection, process hollowing, and system hooking for persistent control, screen monitoring, file exfiltration,…

C# tool that generates malicious VBA macros with shellcode injection, VBA purging, and sandbox detection for red team operations.

Automated DLL Sideloading Tool With EDR Evasion Capabilities

A tool to generate obfuscated one liners to aid in penetration testing

Rust-based tool for executing .NET assemblies, PowerShell, BOFs, and PE files with patchless AMSI/ETW bypass and NTDLL unhooking. Supports encrypted…

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…