A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Updated Nov 13, 2018
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) remote administration and post-exploitation tool…
Updated Nov 14, 2018
The LAZY script will make your life easier, and of course faster.
Updated Jul 31, 2018
Awesome XSS stuff
Updated Nov 8, 2018
Git All the Payloads! A collection of web attack payloads.
Updated Aug 27, 2018
Python Remote Administration Tool (RAT)
Updated Mar 9, 2017
Updated Jan 24, 2018
🔥 CHAOS allow generate payloads and control remote Windows systems.
Updated Apr 9, 2018
MSFvenom Payload Creator (MSFPC)
Updated Aug 28, 2017
A collection of various GitHub gists for hackers, pentesters and security researchers
Updated Nov 4, 2017
Payload for teensy like a rubber ducky but the syntax is different. this Human interfaes device ( HID attacks ). Pene…
Updated Sep 5, 2018
A framework for Backdoor development!
Updated Mar 18, 2018
HERCULES is a special payload generator that can bypass antivirus softwares.
Updated Jan 31, 2018
🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
Updated Oct 28, 2018
ezXSS is an easy way to test (blind) XSS
Updated Jun 19, 2018
Python AV evasion tool capable to generate FUD executable even with the most common 32 bit metasploit payload(exe/elf…
Cloak can backdoor any python script with some tricks.
Updated Mar 3, 2018
transform your payload.exe into one fake word doc (.ppt)
Updated Jan 21, 2018
C++ GUI for TegraRcmSmash (Fusée Gelée exploit for Nintendo Switch)
Updated Oct 7, 2018
Reflective PE packer.
Updated May 9, 2018
This repository contains full code examples from the book Gray Hat C#
Updated Jul 21, 2017
This repository contains payload to test NoSQL Injections
Updated Jun 22, 2017
Analysing parameters with all payloads' bypass methods, aiming at benchmarking security solutions like WAF.
Updated Nov 25, 2017
Generates malicious LNK file payloads for data exfiltration
Updated Aug 21, 2017
ARCANUS is a customized payload generator/handler.
Updated Feb 27, 2018
Multiplatform payload dropper
Updated Feb 22, 2018
Go-deliver is a payload delivery tool coded in Go.
Updated Jun 18, 2018
SMB Relay Attack Script
Updated Jan 19, 2018
MalQR is a collection of malicious QR Codes and Barcodes you can use to test the security of your scanners.