
merlin
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

The Havoc Framework

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Adversary Emulation Framework

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Decrypted content of eqgrp-auction-file.tar.xz

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Undetectable Windows Payload Generation

A modern 32/64-bit position independent implant template

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

MSFvenom Payload Creator (MSFPC)

Pop shells like a master.

MCP Server for Metasploit

EXOCET - AV-evading, undetectable, payload delivery tool

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的代码,帮助红队人员更方便快…

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…