-
-
Windows-PE-Injector Public
Advanced Windows PE Injector (x86/x64, C++17, MSVC 19+). Manual mapping of DLLs (Run export call) + full EXE injection into svchost.exe. Direct syscall stubs, PPID spoofing (explorer.exe), randomiz…
-
RedTeam-Arsenal Public
Red Team Arsenal - a comprehensive collection of tools, scripts, and techniques for conducting red team operations and adversary simulations, including custom beacons, malleable C2 profiles, aggres…
-
-
Jackalope Public
Forked from googleprojectzero/JackalopeBinary, coverage-guided fuzzer for Windows, macOS, Linux and Android
C++ Apache License 2.0 UpdatedMar 2, 2026 -
HVNC-windows-remote-toolkit Public
Remote administration toolkit for windows, based on Hidden VNC: file manager, keystroke logger, powershell
-
-
Bypass-Protection0x00 Public
EDR & AV Bypass Arsenal— a comprehensive collection of tools, patches, and techniques for evading modern EDR and antivirus defenses.
-
Keylogger_Win64 Public
Win64 Keylogger: logs input, chats, URLs, passwords, stealthy, C API, no external dependencies.
-
Chrome-extension-installer Public
Chromium extension + loader with command support for system control + 2 Node JS servers
-
-
P2P-Worm Public
Collection of scripts and a binary agent for automated reconnaissance scanning, SSH/Telnet propagation, and C2 control
-
blackbox-ave Public
Linux Rootkit (x86-64 / ARM64) that stealth hides processes, files, and sockets, hooks syscalls, encrypts traffic, and bypasses SELinux / AppArmor.
-
Shellcode-Injector Public
PoC shellcode injector using clean syscalls to bypass user-mode hooks in ntdll.dll
-
Agent-Loader Public
Modular C2 loader featuring dynamic function encryption, in-memory payload support, and a covert DoH command channel, configurable via a Python builder and a Node.js web panel.
-
Framework-Botnet Public
Framework for creating and managing a botnet
-
CS-Loader Public
Forked from Meowmycks/konekoRobust Cobalt Strike shellcode loader with multiple advanced evasion features
C++ UpdatedApr 21, 2025 -
-
-
spawn Public
Forked from boku7/spawnCobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks by spawning sacrificial process with Arbitrary Code Guard (AC…
C MIT License UpdatedMar 8, 2023 -
rewind Public
Forked from quarkslab/rewindSnapshot-based coverage-guided windows kernel fuzzer
Rust Apache License 2.0 UpdatedDec 16, 2021