
USP
Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

Establishes persistence on a Linux system by creating a udev rule that triggers the execution of a specified payload (binary or script)

A firebeam plugin that exploits the CVE-2024-26229 vulnerability to perform elevation of privilege from a unprivileged user

Adaptive DLL hijacking / dynamic export forwarding - EAT preserve

This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)

Proof-of-concept exploit for CVE-2024-27956 SQL injection in ValvePress Automatic plugin. Creates admin users in WordPress to achieve remote code…

CVE-2023-51518: Preauthenticated Java Deserialization via JMX in Apache James

Injects x64 managed DLLs into GUI processes via SetWindowsHook, with a modular C# payload runner and LSASS dump POC for red-team/offensive Windows…

Windows x64 handcrafted token stealing kernel-mode shellcode

Proof-of-concept exploit for CVE-2024-3400, demonstrating command injection in Palo Alto PAN-OS with a Python-based backdoor, persistence via…

Linux kernel privilege escalation exploit for CVE-2023-32233 using nft_quota UAF, ROP chain, and modprobe_path overwrite to gain root on kernels…


Various ways to execute shellcode

A PoC demonstrating code execution via DLL Side-Loading in WinSxS binaries.

Rusty Injection - Shellcode Reflective DLL Injection (sRDI) in Rust (Codename: Venom)

REC2 (Rusty External Command and Control) is client and server tool allowing auditor to execute command from VirusTotal and Mastodon APIs written in…

A new simple and powerfull packer for malware

PowerShell-based Active Directory enumeration tool for gathering network configuration, domain objects, user sessions, share permissions, and…

PowerShell exploit for PrintNightmare (CVE-2021-1675) performing local privilege escalation via Print Spooler, with custom DLL payload injection to…