
SharpShooter
Payload Generation Framework

Payload Generation Framework

Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.

AV/EDR evasion via direct system calls.

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…


RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

DNS-Persist is a post-exploitation agent which uses DNS for command and control.

Public repository for improvements to the EXTRABACON exploit

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.

BOF to run PE in Cobalt Strike Beacon without console creation

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)


🌒 Shell command obfuscation to avoid detection systems

A Windows Remote Administration Tool in Visual Basic with UNC paths

Proof of concept python script for regreSSHion exploit.