
BobTheSmuggler
"Bob the Smuggler": A tool that leverages HTML Smuggling Attack and allows you to create HTML files with embedded 7z/zip archives. The tool would…

"Bob the Smuggler": A tool that leverages HTML Smuggling Attack and allows you to create HTML files with embedded 7z/zip archives. The tool would…

This is the development tree. Production downloads are at:

A payload delivery system which embeds payloads in an executable's icon file!

Tool for embedding payloads into JPG/PNG format images, allowing to perform certain actions when opening them.

PoC - Exploit Delivery via Steganography and Polyglots, CVE-2014-0282

PyExfil — Python 3 toolkit for researching and stress-testing data exfiltration techniques across network, physical, and steganographic channels. For…

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

A simple utility to convert EXE files to JPEG images and vice versa.

Encodes a PowerShell script in the pixels of a PNG file and generates a oneliner to execute

Hide cool stuff in images :)

PHP script and guide for injecting PHP webshells into JPEG images using Jhead. Used to bypass file upload filters and achieve remote command…

Image Payload Creating/Injecting tools

Forblaze - A Python Mac Steganography Payload Generator

Repository to index useful tools for CTF's

Advanced EDR Evasion via AI Telemetry Spoofing & WASM Sandboxing. Project Onyx is a PoC Red Team pipeline designed to demonstrate advanced evasion…

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

PEGASUS-NEO is a comprehensive penetration testing framework designed for security professionals and ethical hackers. It combines multiple security…