58 bytes small Linux/x86 read /etc/passwd shellcode.
075f10569d00f66af6a0529e3d650b0e1f373f2b2b3ec572044eed21b422eb92
29 bytes small Linux/x86 execve(/bin/sh) + RShift-1 encoded shellcode.
509a7b73748516eb1e0fa3477a3f424f87f30464e13f64f0d3cb817ecff4ecd8
64 bytes small Linux/ARM reverse TCP (192.168.1.124:4321) shell (/bin/sh) shellcode.
73c3d7113860971adf57a6d814ed49aa6aaa51053acefa7ce2c6063b4e50e509
53 bytes small Linux/x86 execve() shellcode that runs bc (terminal calculator).
a52a21780a286e00252a03c928310b2f2177bd2819099427c7f1d5e55e46f4a1
5 bytes small Linux/x86 exit(0) shellcode.
babc1efe806ede5f6ba393593394ffc7d82e5c7ea51ee8014a29dc10acf11209
100 bytes small Linux/x86 TCP/4444 bindshell shellcode.
9ed4e6381113430ba42f2fbe3d6a316427517b430e541a89043704485ce4cfc3
Windows/x86 download with TFTP and execute shellcode generator.
c8cc51a087e29761255b9bf2a95108df4695236b166eb1953a24eed80cb7568c
119 bytes small Linux/x86 wget chmod execute over execve /bin/sh -c shellcode.
a72f3bc615fe9e9a20c820a560efa6d37bc7e45a5afd1b615667aa336108a7df
14 bytes small Linux/x86 kill all processes shellcode.
ae3657701eec4fb6d1b05cf454b969c856ff0d0f00128bd4fc81eede5b133a30
93 bytes small Linux/x64 disable ASLR Security shellcode.
bfba9bba35bda0b1441d416d81269e233df34a339d9d54d7b408201cb68de428
95 bytes small Linux/x86 execve(/usr/bin/ncat -lvp 1337 -e /bin/bash) null-free shellcode.
680426a3f5a1bca289c7211b9fde035fd3ea3ff2cefde80c678d8fa8c9c28153
119 bytes small Linux/x64 reverse (0.0.0.0:1907/TCP) shell shellcode.
e0e74d40c3e636f312b82579e463a18531fc4a43f62d0f957640bba6a354a1eb
61 bytes small Linux/x86 /usr/bin/head -n99 cat etc/passwd shellcode.
d599a6170b8fc6c0a18d02af4dd4a98f98fcaf1d305382d56cba5cd145a3adb3
58 bytes small Linux/x86 bind (99999/TCP) netcat traditional (/bin/nc) shell (/bin/bash) shellcode.
e8ad9402dd064b6380ad50ccdfd554955945a67f19f071027c1fbeec4b1380ad
864 bytes small Windows/x64 logger shellcode.
210722795927e610732016e2fc69488ccc4fa0f4f5df5d51b6a6aa8b232119cc
44 bytes small Linux/x86 execve(/bin/cat /etc/ssh/sshd_config) shellcode.
569c1b818f20700e5f5bd58566b797c2f92c5f341cb5ada4c7481b026ff2ee07
104 bytes small Linux/x86 execve(/bin/sh) + MMX/ROT13/XOR shellcode (encoder/decoder).
6ddab3763d37dfbbb724243a6de756c793e102720e772e8122341c6111c3786a
181 bytes small Linux/MIPS (Big Endian) execve(/bin/sh) + reverse TCP 192.168.2.157/31337 shellcode.
245109394ab2bdfc2a8c0d490131768798eae49f523ec021591b5093147082ac
This program takes a payload and does a single offset on the payload (ceaser cypher encryption) and allows you to take the payload and decrypt and execute it in memory to bypass signature detection of currently detectable payloads.
ee91aa4bcf011dce33164aea66f95934fa966286bcdc399e592508141b7f0adc
50 bytes small Linux/x86 execve(/bin/sh) + NOT +SHIFT-N+ XOR-N encoded shellcode.
f7dd96eaac3df037d071ccc666a335af92f650a8694889a5fa81475074f97603
92 bytes small Linux/ARM bindshell null-free shellcode that binds to TCP 0.0.0.0:4444.
5e4a56099b6f728ca368e7e90a10cd1dabd783b21be356cc3342aba2efcb0b55
52 bytes small Linux/ARM sigaction() based egghunter (PWN!) + execve("/bin/sh", NULL, NULL) shellcode.
b50b5d62ce58a29dc0e6d26313d5d41834b3dcef3d1b06c2dfeb0656c5bae341
28 bytes small Linux/ARM egghunter (PWN!) + execve("/bin/sh", NULL, NULL) shellcode.
0eef16ecce4649ee285b42d5b1d845b5c38d4cdf877bea784e7838b2f316fb87
27 bytes small Linux/x86 egghunter (0x50905090) + sigaction() shellcode.
0540d3ce5c8ce0a0b7d747d4e9371ba9e0ef21403e57c4eac0bc6d3477425a63
4 bytes small Linux/ARM jump back shellcode + execve("/bin/sh", NULL, NULL) shellcode.
e40d5fb711e395338ca66db21cd2f8dcb0cefa25b6b2776a925ef9dcd2f265ce