
SILVERPICK
Windows User-Mode Shellcode Development Framework (WUMSDF)

Windows User-Mode Shellcode Development Framework (WUMSDF)

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Polymorphic binary encoder for offensive security payloads. Encodes shellcode with LFSR-based feedback loop, garbage instruction injection, and…

SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Chimera is a PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

Simple CLI tool for the generation of bind and reverse shells in multiple languages

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…

PoCs and tools for investigation of Windows process execution techniques

Excel 4.0 (XLM) Macro Generator for injecting DLLs and EXEs into memory.

Shellcode loader demonstrating multiple execution techniques including direct syscalls, IAT evasion, encrypted payloads, PPID spoofing, and code…

Reverse backdoor written in PowerShell and obfuscated with Python. It generates payloads for popular hacking devices like Flipper Zero and Hak5 USB…

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…