
CVE-2017-7494_SambaCry
SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

SambaCry (CVE-2017-7494) exploit for Samba | bind shell without Metasploit

Executes position independent shellcode from an encrypted zip

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

C# implementations of shellcode injection techniques including classic injection, thread hijacking, process hollowing, and atom bombing, using…

Python AV Evasion Tools

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

Evades AV and sandboxes on Windows using anti-sandbox checks, ntdll unhooking, dynamic API resolution, and multi-layer shellcode obfuscation…

Rust crate for ghost-frame call-stack spoofing, runtime indirect syscalls, and APC injection on Windows x64. Provides SSN resolution, JIT stub…

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

A modern 32/64-bit position independent implant template

A repository of Windows Shellcode runners and supporting utilities. The applications load and execute Shellcode using various API calls or techniques.

A fully featured backdoor that uses Twitter as a C&C server

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

Threadless Process Injection using remote function hooking.

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras