{"repo":"Kiosec/Shells","free":true,"listed":false,"github":"https://github.com/Kiosec/Shells","clone":"git clone https://github.com/Kiosec/Shells.git","description":"List of payloads: reverse shell, bind shell, webshell.","language":null,"stars":73,"topics":["shell","webshell","reverse-shell","msfvenom","payload","bind-shell","powershell"],"license":null,"category":"cli-tools","readme_excerpt":"Shells Table of contents ➤ Shells Reverse shell One liner Webshell Online generator ➤ Upload bypass Rename the extension Bypass the extension checks Bypass using the content-type Magic number Bypass using .htaccess ➤ Shell Stabilisation Technique 01: Python Technique 02: Script Technique 03: Rlwrap Technique 04: Socat ⭕ Shells 🔻Reverse shell ➤ .ELF (Linux) .SH ➤ .EXE ➤ .PS1 (Powershell - Basic) ➤ .PS1 (Powershell - Upload and execution) ➤ .ASP ➤ .ASPX ➤ .JSP ➤ .WAR ➤ .PHP ➤ .HTA ➤ .DLL ➤ .RB (Ruby) ➤ .JAR Using msfvenom Manually ➤ .SO reference : https://routezero.security/2025/02/19/proving-grounds-practice-dev working-walkthrough/ https://medium.com/@carlosbudiman/oscp-proving-grounds-dev-working-intermediate-linux-cd59f01b42c9 Code example 01 (lib backup.c): LPE Code example 02 (lib backup.c): Reverse shell Code example 03 (lib backup.c): Create SUID on bash ➤ Macro .ODT How to create a malicious .ODT macro : https://www.savagehack.com/blog/craft-walkthrough-proving-grounds-offsec https://medium.com/@ardian.danny/oscp-practice-series-59-proving-grounds-craft-4b86a013924d ➤ RUNAS (Windows) ➤ Invoke-RunasCs (powershell) Script : https://github.com/antonioCoco/RunasCs/blob/master/Invoke-RunasCs.ps1 ➤ Busybox Busybox may be installed on the victim linux machine and it is deployed directly with netcat. ➤ NC netcat linux binaries : https://github.com/H74N/netcat-binaries/tree/master/build Famous error : 🔻Single line Webshell ➤ PHP ➤ ASP ➤ JSP ➤ Python 🔻Online Generator https:","default_branch":null,"files":null,"tree":[],"storefront":"/r/Kiosec","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Kiosec/Shells/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}