
dropengine
DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

Crystal Palace Evasion kit for Sliver

CVE-2026-8452 PreAuth RCE

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Exploit for CVE-2015-8522 targeting Tivoli FastBack Server with stack-based buffer overflow, ASLR/DEP bypass, and automated reverse-shell…

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

Automated Tool That Generates The Perfect Meterpreter Powershell Payload

Curated collection of security tools, exploits, proof-of-concept code, shellcodes, and scripts for penetration testing and educational offensive…

MSFvenom Payload Creator (MSFPC)

Linux ELF x32/x64 ASLR DEP/NX bypass exploit with stack-spraying

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

Linux Shared Library to Shellcode Loader

Python exploit for Serv-U SSH vulnerability (CVE-2021-35211) with multiple payload modes: stage, exec, and download-execute, enabling shellcode…

A wrapper for MSFvenom that allows for easy generation of payloads

An exploitation framework for CVE-2018-19323 - GIGABYTE GDrv privilege escalation vulnerability with multi-architecture support and framework…