
metasploit-framework
Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Some setup scripts for security research tools.

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

PEDA - Python Exploit Development Assistance for GDB

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Pack shellcode and PE executables into evasive payloads with anti-debug, unhooking, syscall, and memory fluctuation techniques for red-team…

SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

Custom PE loading and manipulation library for manual mapping, IAT hooking, memory dumping, and rebuilding imports for malware analysis and reverse…

Polymorphic binary encoder for offensive security payloads. Encodes shellcode with LFSR-based feedback loop, garbage instruction injection, and…

On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.

Cobalt Strike aggressor script for generating, formatting, and encrypting beacon shellcode with support for multiple exit methods, syscalls, and…

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

🧙♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications

PoCs and tools for investigation of Windows process execution techniques

Excel 4.0 (XLM) Macro Generator for injecting DLLs and EXEs into memory.

Nano is a family of PHP web shells which are code golfed for stealth.

Create fake certs for binaries using windows binaries and the power of bat files