
reverse_ssh
SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

Shellcode loader demonstrating multiple execution techniques including direct syscalls, IAT evasion, encrypted payloads, PPID spoofing, and code…

Combines AppDomain Manager injection with shellcode embedding in signed binaries to evade EDR/AV detection for red team payloads.

A helper utility for creating shellcodes. Cleans MASM file generated by MSVC, gives refactoring hints.

Proof-of-concept exploit for CVE-2021-30632, a Chrome V8 vulnerability, demonstrating reliable shellcode execution via out-of-bounds write to achieve…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Encrypted C2 and post-exploitation framework for red teams, with modular PowerShell/Python/C#/Go agents, many offensive modules, and easy…

Generates PowerShell-based shellcode injection payloads for memory execution, supporting Metasploit, Cobalt Strike, and custom shellcode via macro,…

Cross-platform post-exploitation C2 server and agent in Go supporting HTTP/2, P2P, JA3 spoofing, .NET/PE execution, and shellcode injection for red…

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Polymorphic binary encoder for offensive security payloads. Encodes shellcode with LFSR-based feedback loop, garbage instruction injection, and…

PowerShell obfuscation tool that bypasses AMSI and antivirus detection using string substitution and variable concatenation to evade signatures for…

Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions.…

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

PoCs and tools for investigation of Windows process execution techniques

Load and inject .NET assemblies into host processes with CLR reuse, bypassing ETW/AMSI and EDR hooks via static syscalls and API hashing for…

Simple CLI tool for the generation of bind and reverse shells in multiple languages

Cross-platform C2 agent for Mythic with dynamic function loading, SOCKS5 proxy, file operations, shellcode injection, and macOS/Windows…