
merlin
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

Hide your Powershell script in plain sight. Bypass all Powershell security features

.NET, PE, & Raw Shellcode Packer/Loader Written in Nim

OfensivePipeline allows you to download and build C# tools, applying certain modifications in order to improve their evasion for Red Team exercises.

Simple CLI tool for the generation of bind and reverse shells in multiple languages

Reverse backdoor written in PowerShell and obfuscated with Python. It generates payloads for popular hacking devices like Flipper Zero and Hak5 USB…

Reverse shell generator written in Python 3.

Combines AppDomain Manager injection with shellcode embedding in signed binaries to evade EDR/AV detection for red team payloads.

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

Go package that aids in binary analysis and exploitation

WIP shellcode loader in nim with EDR evasion techniques

C-shellcode to hex converter, handy tool for paste & execute shellcodes in IDA PRO, gdb, windbg, radare2, ollydbg, x64dbg, immunity debugger & 010…


Staged DLL injection proof-of-concept built in C using Win32 APIs — developed in an isolated lab environment for red team certification study (CRTO).

golang script for bypass AV and work only in windows platform

PoC for Forgot2kEyXCHANGE (CVE-2020-0688) written in PowerShell

Automatic script written in python for CVE-2009-3999