
sliver
Adversary Emulation Framework

Adversary Emulation Framework

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

CVE-2026-8452 PreAuth RCE

Palo Alto - CVE-2026-0300 exploit

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Multi-architecture assembler framework that converts assembly source into machine code for Arm, x86, MIPS, PowerPC, RISC-V, and more, with a…

Windows User-Mode Shellcode Development Framework (WUMSDF)

CVE-2026-38526 exploit for Krayin CRM v2.2.x - Authenticated RCE via TinyMCE file upload bypass. Features interactive shell, multi-type payloads,…

OpenSTAManager RCE Exploit (CVE-2026-38751)

Google Chrome CVE-2026-6307 PoC

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

Crystal Palace Evasion kit for Sliver

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

A modern 32/64-bit position independent implant template

Generates JavaScript payloads to exploit CVE-2024-28397 Js2Py sandbox escape, enabling remote command execution and reverse shells via Python…