
Chankro
Herramienta para evadir disable_functions y open_basedir

Herramienta para evadir disable_functions y open_basedir

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Advanced EDR Evasion via AI Telemetry Spoofing & WASM Sandboxing. Project Onyx is a PoC Red Team pipeline designed to demonstrate advanced evasion…

evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

Combines AppDomain Manager injection with shellcode embedding in signed binaries to evade EDR/AV detection for red team payloads.

A workshop about Malware Development

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

C# tool that generates malicious VBA macros with shellcode injection, VBA purging, and sandbox detection for red team operations.

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

Elite exploitation toolkit for CVE-2025-55182 (React Server Components RCE). Async polymorphic payloads, advanced WAF/CDN bypass, proxy rotation,…

SharpSploit is a .NET post-exploitation library written in C#

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

SHAREM is a shellcode analysis framework, capable of emulating more than 45,000 WinAPIs and virutally all Windows syscalls. It also contains its own…

Various ways to execute shellcode

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

Get your data from the resource section manually, with no need for windows apis

Repository containing exploit scripts for various CVEs, targeting web applications, binaries, and network services, suitable for penetration testing…