
RunPE
C# Reflective loader for unmanaged binaries.

C# Reflective loader for unmanaged binaries.

A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)


Tools and PoCs for Windows syscall investigation.

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…


Terminate AV/EDR leveraging BYOVD attack

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Project Mantis: Hacking Back the AI-Hacker; Prompt Injection as a Defense Against LLM-driven Cyberattacks

A novel adversarial attack on LLM based on the Exponentiated Gradient Descent technique.

Code repository for CS5446 project exploring defenses against jailbreak attacks on large-language models it includes datasets, notebooks,…

An information security preparedness tool to do adversarial simulation.

Framework for auditing machine learning algorithms against adversarial attacks and biases, providing educational tools and an academic paper to…

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers (CSPs)

This project (PoC for now, and part of Shit Bucket) involves face detection, face recognition and adversarial input to protect avatars

A slightly more fun way to disable windows defender + firewall. (through the WSC api)