
Stardust
A modern 32/64-bit position independent implant template

A modern 32/64-bit position independent implant template

Pop shells like a master.

A wrapper for MSFvenom that allows for easy generation of payloads

Windows User-Mode Shellcode Development Framework (WUMSDF)

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

UNIX-like reverse engineering framework and command-line toolset.

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Multi-architecture assembler framework that converts assembly source into machine code for Arm, x86, MIPS, PowerPC, RISC-V, and more, with a…

SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

Polymorphic binary encoder for offensive security payloads. Encodes shellcode with LFSR-based feedback loop, garbage instruction injection, and…

Chimera is a PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

PoCs and tools for investigation of Windows process execution techniques