
VX-API
Collection of various malicious functionality to aid in malware development

Collection of various malicious functionality to aid in malware development

c++ fully undetected shellcode launcher ;)

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.


PostShell - Post Exploitation Bind/Backconnect Shell


Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

Freeze.rs is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls written in RUST

Automated DLL Sideloading Tool With EDR Evasion Capabilities

Automated ROP chain builder that extracts and analyzes gadgets from binaries using semantic queries, supporting X86/X64 architectures with a Python…

LittleCorporal: A C# Automated Maldoc Generator

Automated Application Generation for Stack Overflow Types on Wireless Routers

Automated deployment tool for CVE-2024-31317 PoC on Android 9-13, enabling privilege escalation via Zygote injection and reverse shell execution.

Automated Active Directory post-exploitation toolkit for Kerberos ticket extraction, NTLM relay attacks, and lateral movement via NetExec, Impacket,…

An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized…

Automated shell upload exploit for CVE-2023-5360 targeting WordPress Royal Elementor plugin, enabling remote code execution via crafted payloads.

Android kernel exploit for CVE-2026-43499 (Futex-PI use-after-free) that gains temporary root on Xiaomi XIG04 to enable ADB. Includes automated…

Automated scanner and exploit for CVE-2025-34085, an unauthenticated RCE in the WordPress Simple File List plugin. Supports multi-target scanning,…