
PINKPANTHER
Windows x64 handcrafted token stealing kernel-mode shellcode

Windows x64 handcrafted token stealing kernel-mode shellcode

Loads and runs ELF objects entirely in memory across x86_64/x86 Linux systems, resolving libc symbols at runtime for stealthy post-exploitation…

A Bash/Batch/PowerShell polyglot!

macOS Initial Access Payload Generator

Tools for discovery and abuse of COM hijacks

A cross-platform implant written in Nim

Windows 8.1 and 10 UAC bypass abusing WinSxS in "dccw.exe".


Rust-based PoC using Windows fibers to execute in-memory code stealthily, hiding payload stacks from EDR by switching between control and payload…

参考Gh0st源码,实现的一款PC远程协助软件,拥有远程Shell、文件管理、桌面管理、消息发送等功能。

This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)

Windows Local Privilege Escalation via CdpSvc service (Writeable SYSTEM path Dll Hijacking)

A delicious, but malicious SSL-VPN server 🌮

Hides reflective payloads in GPU memory via CUDA APIs, wiping host memory during sleep and using a VEH handler to restore executable memory, evading…

Exploit Development - Weaponized Exploit and Proof of Concepts (PoC)

CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking

Golang reverse/bind shell generator

micr0shell is a Python script that dynamically generates Windows X64 PIC Null-Free reverse shell shellcode.