
SysWhispers3
SysWhispers on Steroids - AV/EDR evasion via direct system calls.

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

DKMC - Dont kill my cat - Malicious payload evasion tool

Automates creation and hosting of a JavaScript XSS payload to install a malicious theme module, triggering a reverse shell via Remote Code Execution…

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

EXOCET - AV-evading, undetectable, payload delivery tool

A beacon generator using Cobalt Strike and a variety of tools.

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

# CVE-2025-0282: Remote Code Execution Vulnerability in [StorkS]

Extending of metasploit-framework

Golang reverse/bind shell generator

pinky - The PHP mini RAT (Remote Administration Tool)

Proof-of-concept local privilege escalation tool exploiting a kernel XFRM/ESP vulnerability (CVE-2026-43503) via crafted AES-CBC encrypted payloads…

A tool to abuse Exchange services

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Patched GNU Bash 3.2 with a fix for CVE-2014-6271 (Shellshock). Provides a standard POSIX shell with command-line editing, job control, and history…

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

Introduction to the exploitation of ELF binaries.