
venom
Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence

Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

An exploitation framework for CVE-2018-19323 - GIGABYTE GDrv privilege escalation vulnerability with multi-architecture support and framework…

Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by utilizing…

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

poc for CVE-2025-24252 & CVE-2025-24132

ScareCrow - Payload creation framework designed around EDR bypass.


A third-party Gopher Assassin for the Havoc Framework.

CVE-2024-25600 - Unauthenticated RCE exploit for WordPress Bricks Builder Theme. Advanced exploitation framework with interactive shell, reverse…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

ROP ROCKET is an advanced code-reuse attack framework, with extensive ROP chain generation capabilities, including for novel Windows Syscalls attack,…

An ML powered Graph-Based Multi-Architecture Approach for ROP Gadget Detection

Fileless x64 Assembly C2 framework with dual-channel ICMP/DNS protocol pivoting, direct syscall execution, and ptrace-based process injection for…