GitHub repo leaderboard by stars, growth rate and activity.
Python based backdoor that uses Gmail to exfiltrate data through attachment. This RAT will help during red team engagements to backdoor any Windows machines. It tracks the user activity using screen capture and sends it to an attacker as an e-mail attachment.
Statically-linked ssh server with reverse shell functionality for CTFs and such
ParadoxiaRat : Native Windows Remote access Tool.
Sandman is a NTP based backdoor for hardened networks.
Windows Remote Administration Tool that uses Discord, Telegram and GitHub as C2s
AiGPT started from the concept of CVE‑2024‑27956 , the WP Automatic CSV injection — but has been completely rebuilt into a multi‑vector, unauthenticated WordPress exploitation engine. It now chains 13 real‑world CVEs to create an administrator account or drop a web shell directly, then automatically injects a reverse shell into the active theme
| # | Repo | Language | Stars | 30-day trend | Last updated |
|---|---|---|---|---|---|
| 1 | Python based backdoor that uses Gmail to exfiltrate data through attachment. This RAT will help during red team engagements to backdoor any Windows machines. It tracks the user activity using screen capture and sends it to an attacker as an e-mail attachment. | Python | 1,206 | last pushed 4 years ago | |
| 2 | Statically-linked ssh server with reverse shell functionality for CTFs and such | Go | 1,056 | last pushed 2 months ago | |
| 3 | ParadoxiaRat : Native Windows Remote access Tool. | C | 828 | last pushed 3 years ago | |
| 4 | Sandman is a NTP based backdoor for hardened networks. | C# | 818 | last pushed 2 years ago | |
| 5 | Windows Remote Administration Tool that uses Discord, Telegram and GitHub as C2s | Python | 699 | last pushed 2 years ago | |
| 6 | AiGPT started from the concept of CVE‑2024‑27956 , the WP Automatic CSV injection — but has been completely rebuilt into a multi‑vector, unauthenticated WordPress exploitation engine. It now chains 13 real‑world CVEs to create an administrator account or drop a web shell directly, then automatically injects a reverse shell into the active theme | Python | 133 | last pushed 3 months ago |
All · 11,474