
Windows
Collection of offensive techniques for attacking Windows environments, with practical methods for exploitation, privilege escalation, and adversarial…

Collection of offensive techniques for attacking Windows environments, with practical methods for exploitation, privilege escalation, and adversarial…

Similar to Petitpotam, the netdfs service is enabled in Windows Server and AD environments, and the abused RPC method allows privileged processes to…

Never ever ever use pixelation as a redaction technique

Strip multi-vendor AI provenance marks: Unicode text hygiene, statistical rewrite hooks, and C2PA/metadata from PNG/JPEG/SVG/PDF/DOCX/HTML/MD

Simple (relatively) things allowing you to dig a bit deeper than usual.

A toolset to make a system look as if it was the victim of an APT attack

A slightly more fun way to disable windows defender + firewall. (through the WSC api)

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

image scaling attacks for multi-modal prompt injection

Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes

kill anti-malware protected processes ( BYOVD )

Dynamically invoke arbitrary unmanaged code from managed code without PInvoke.

Weaponize DLL hijacking easily. Backdoor any function in any DLL.

During the exploitation phase of a pen test or ethical hacking engagement, you will ultimately need to try to cause code to run on target system…

Lifetime AMSI bypass

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

This is the tool to dump the LSASS process on modern Windows 11

Windows Defender patch bypass PoC for CVE-2026-50656 (RoguePlanet), demonstrating exploitability on Windows 11 25H2 and Server 2025 despite…