
quasibot
complex webshell manager, quasi-http botnet.

complex webshell manager, quasi-http botnet.

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Rust Weaponization for Red Team Engagements.

Deploy payloads to *Nix systems en masse

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence

HRShell is an HTTPS/HTTP reverse shell built with flask. It is an advanced C2 server with many features & capabilities.

Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with…

template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Adversary Emulation Framework

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

Hershell is a simple TCP reverse shell written in Go.

Nano is a family of PHP web shells which are code golfed for stealth.

RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post