DISCLAIMER: These programs are provided "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS or IMPLIED, including but not limited to THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE and NONINFRINGEMENT. In no event shall the authors, copyright holders or tigerteam.se be liable for any claim, damages or other liability, whether in an action of contract, tort or otherwise, arising from, out of or in connection with the software or the use or other dealings in the software.

Latest version: 1.36
Shadowinteger's Backdoor

sbd is a Netcat-clone, designed to be portable and offer strong encryption. It runs on Unix-like operating systems and on Microsoft Win32. sbd features AES-CBC-128 + HMAC-SHA1 encryption (by Christophe Devine), program execution (-e option), choosing source port, continuous reconnection with delay, and some other nice features. Only TCP/IP communication is supported. Source code and binaries are distributed under the GNU General Public License.

sbd can be used for any number of network-related things, e.g.:

  • Secure file transfer
  • Remote administration
  • Simple (but secure) peer-to-peer chat
  • Pen-test tool (crypto avoids NIDS detection and telnet-style traffic recording)
sbd is available for Unix-like operating systems and for Microsoft Windows (win32).

Download sbd via HTTP

gwee (Generic Web Exploitation Engine) is a small program written in C designed to exploit input validation vulnerabilities in web scripts, such as Perl CGIs, PHP, etc. gwee is much like an exploit, except more general-purpose. It features several reverse (connecting) shellcodes (x86 Linux, FreeBSD, NetBSD, Perl script (universal), Python script (universal)), 4 methods of injecting (executing) them, built-in http/https client and built-in server (listener) for receiving connections (and remote shell) from injected shellcodes. gwee is distributed under the MIT License. The Perl and Python shellcodes were written by Sabu.

gwee is available for Unix-like operating systems and for Microsoft Windows (win32).

Download gwee via HTTP

Latest version: 1.70
Reverse Remote Shell

rrs is a reverse (connecting) remote shell. Instead of listening for incoming connections it will connect out to a listener (rrs in listen mode). The listener will accept the connection and receive a shell from the remote host. rrs features full pseudo-tty support, full OpenSSL support (high encryption, client/server authentication, choice of cipher suites), Twofish encryption, a simple XOR cipher, plain-text (unencrypted) session, peer-side session monitoring (snooping), daemon option and reconnection features. rrs is Free Software distributed under the MIT License and is known to compile and run under Linux, FreeBSD, NetBSD, OpenBSD and QNX.

rrs is only available for Unix-like operating systems.

Download rrs via HTTP

Latest version: 0.2

sishell is a reverse (connecting) shellcode kit for x86 Linux, FreeBSD, NetBSD and OpenBSD. You may generate both regular shellcode (no NULLs) and stand-alone ELF executables (for e.g. injection into web script vulnerabilities). sishell is distributed with a Makefile system, a custom ELF brander (brandelf) and a C example code generator. sishell is distributed under the MIT License.

Download sishell via HTTP

