
acheron
indirect syscalls for AV/EDR evasion in Go assembly

indirect syscalls for AV/EDR evasion in Go assembly

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

Java-based exploit for CVE-2022-26134 that injects a Godzilla webshell into Confluence servers, enabling remote code execution with password and key…

Windows User-Mode Shellcode Development Framework (WUMSDF)

Forth-based compiler deployed as position-independent x86_64 shellcode, providing a remote code execution agent with interactive REPL over TCP, HTTP,…

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

Deploy payloads to *Nix systems en masse

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

poc for CVE-2025-24252 & CVE-2025-24132

PoC Thread Execution Hijacking for Win32 Code Injection

Encoded Reverse Shell Generator With Techniques To Bypass AV's

pinky - The PHP mini RAT (Remote Administration Tool)