Prozilla versions 1.3.7.3 and below format string exploit.
f923bc57501752fd758799055979f14fTool for infecting statically linked ELF binaries.
01344ba9078e7b0f9df46d4ab505eae5White paper discussing a method of infecting statically linked ELF binaries.
f26de202612f145e8312ac13bcee90e9Exorcist is a tool that can be considered an anti-anti-ptrace utility that unlocks the ptrace_traceme guard of a binary.
4f3de855baede88cc7938e5a00f635bfSilencer holds three different functionalities. It will deploy a backdoor in a listening service that an attacker must connect to, feed the magic word, and then portscan the machine to find the bindshell spawned, it has an Apache backdoor that allows a connection over HTTP to drop to a shell, and it also has a read sniffer built in that goes through the kernel read() process and then logs it to /tmp/.es.rox. The authors ask to be contacted if anyone finds any systems or kernels that this does not work on.
b8ed4e5d5580425e3bc7b9a3f384fb8b(N)compress 4.2.4 local root exploit.
505ae131e888c0d0a22039418427360eFlooding and sniffing robot for the IRC that attacks with spoof IGMP packets.
63af2c82d90a2d5b92e74b28fdaedb7aFull low level (without libc) AT+T port scanner written for the article "Advanced AT+T asm tutorial. Part 1".
28b35d884ce21e62291ea0c743262c8eDemo Permutate Engine for Linux that supports a few permutatable instructions: xor,sub,test,or,mov.
9b55c3f1df672a063cd3135f7959c0c90x4553_Executor is a memory executor that allows a user to load code from file to memory and execute it.
9e2f0ef13aae43b88f908565e1143d630x4553_Crypt0r is a base engine for encrypting ELF binaries. Uses simple bit rotation and allows for the ability to add your own algorithm.
dd13841a031cc34078b2366a9b793cfeThis utility will search in a binary or core dump for a user supplied string and return the exact location in memory.
e53634887d4d77071a0dcd24a848922dThis ELF infector appends two executables together. The payload inside this parasite opens a bind shell on the infected machine as the user who executed it.
838f332652d0b8da7842f401fd370d46This utility is a basic terminal sniffer.
3b9d7102c81b07bf4926f6749a40251aExploit for NetMerchant that allows for remote command execution.
dc4e662dbf030d483d8cf0330924dd73ES-Malaria is a ptrace() injector.
7fe96ade196dc0c3b70e65b6ce6b82424553 - Invader v2.1.1 is source code which can append parasitic executable code to any ELF binary which causes it it to send a shell to a remote host. Uses TCP port 21317 by default.
e828fd8a619c206f18a7ae7ceb58344dCisco VPN 5000 Linux client version 5.1.5 local root exploit that uses the close_tunnel binary.
a2c3a57714a738b22361ec246558f0daSimple Bof Coder for Linux and BSD constructs proof of concept buffer overflow code by asking several questions about the vulnerability. Written in perl, generates C source.
90be883d2cf21edf39d607c27f330d00IMAP4rev1 remote exploit written for RedHat and Slackware Linux.
9528a6672e2124190c2eb1fc9057a74cLocal buffer overflow exploit for KDE's artsd v2.x and 3.x.
28ee2d6d19ee868c1a758c0011617b4eBadblue webserver v1.5 for Windows remote directory traversal exploit.
6611358811ea30b87156497f8bca824eWu-ftpd 2.6.[0/1] remote heap overflow written in Java. Provides a remote shell. Includes targets for RedHat 7.0 and wu-2.6.0/1 from www.wu-ftpd.org.
65e717bab45e30856c4bca541beeeda8Psreal.c for Linux kernel 2.4.x finds processes hidden even if a LKM is used.
b66c0b8eddf1fcc10d9b1599f0f252e8Hp-ux-bdf.c is a local root buffer overflow exploit for HP-UX's /usr/bin/bdf.
5526447797c7d371db32917465b45ae6