
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

Palo Alto - CVE-2026-0300 exploit

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

Curated collection of security tools, exploits, proof-of-concept code, shellcodes, and scripts for penetration testing and educational offensive…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

CVE-2026-38526 exploit for Krayin CRM v2.2.x - Authenticated RCE via TinyMCE file upload bypass. Features interactive shell, multi-type payloads,…

OpenSTAManager RCE Exploit (CVE-2026-38751)

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

Simple CLI tool for the generation of bind and reverse shells in multiple languages

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Staged DLL injection proof-of-concept built in C using Win32 APIs — developed in an isolated lab environment for red team certification study (CRTO).

Automatic script written in python for CVE-2009-3999

Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)

Exploit for CVE-2015-8522 targeting Tivoli FastBack Server with stack-based buffer overflow, ASLR/DEP bypass, and automated reverse-shell…

A tool for generating reverse shell payloads on the fly.