


Generates fully valid fake identities in Spanish format, including names, emails, bank details, and extended info, with optional zip compression and…

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

A script used to create a whonix like gateway/workstation environment with docker containers.

Track the GPS location of the user's smartphone or PC and capture a picture of the target, along with IP and device information.

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

A Chrome extension that demonstrates bypassing Widevine L3 DRM



Generates fully valid fake identities in Spanish format, including names, emails, bank details, and extended info, with optional zip compression and…

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…


A script used to create a whonix like gateway/workstation environment with docker containers.

Track the GPS location of the user's smartphone or PC and capture a picture of the target, along with IP and device information.

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

A Chrome extension that demonstrates bypassing Widevine L3 DRM

A vulnerability scanner for container images and filesystems

Reproduction environment and proof-of-concept for Spring Cloud Function SpEL injection leading to remote code execution, with a runnable Java 11 demo…

Take over macOS Electron apps' TCC permissions

Generates a malicious Microsoft Word document exploiting the MS-MSDT 'Follina' vulnerability to execute arbitrary commands or stage payloads via an…

Detects unknown jailbreak attacks in large vision-language models using hidden state analysis and autoencoders, with training and evaluation…

Agentic Framework for Synthesizing CodeQL Queries

Beacon Object File (BOF) implementation of the dnscmd.exe functionality used to obtain remote code execution on an ADIDNS server by exploiting the…

Evidence-focused malware reverse engineering with deep PE/.NET inspection, Ghidra reconstruction, AI cross-checks, YARA, and ELF debugging

An empirical security testbed evaluating prompt injection, confused-deputy vulnerabilities, and tool-calling defenses in LLM agents.

Research project reverse-engineering Windows Security Center COM interfaces to trace AV registration through ATL, vtable, WSCAPI, and RPC, with…

Deserialization payload generator for a variety of .NET formatters

Cloud-native C2 framework using cloud storage as dead-drop communication channel