
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

CVE-2025-3969: Exploit PoC (OS CMD injection, Web Shell, Interactive Shell)

Modular Windows C2 framework with a Rust teamserver, Zig implant, indirect syscalls, AMSI bypass, reflective/PoolParty injection, in-memory BOF…

MCP Server for Metasploit

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

Python 3 exploit for CVE-2019-3980. Unauthenticated RCE as SYSTEM via SolarWinds Dameware MRC smart card authentication bypass.

golang script for bypass AV and work only in windows platform

Kage is Graphical User Interface for Metasploit Meterpreter and Session Handler

The Havoc Framework

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Decrypted content of eqgrp-auction-file.tar.xz

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

CVE-2026-8452 PreAuth RCE

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Pop shells like a master.