
TRACE
Agentic jailbreak framework for LLM-based agents using scheme-based task decomposition, multi-turn disguising strategies, and adaptive self-evolution…

Agentic jailbreak framework for LLM-based agents using scheme-based task decomposition, multi-turn disguising strategies, and adaptive self-evolution…

Automated adversary emulation (Caldera) against an AD lab to validate Sigma detection coverage and map results to MITRE ATT&CK.

Python library for adversarial machine learning security, enabling red and blue teams to run evasion, poisoning, extraction, and inference attacks…

C2 profile for Mythic tunneling encrypted peer-to-peer agent traffic through IEEE 802.1AB LLDP Organizationally Specific TLVs for covert Layer 2…

PoC funcional de CVE-2026-17106 (CopyEscape): carrera TOCTOU en docker cp que permite escritura arbitraria en el host Docker. Laboratorio Docker +…

A font-based deception tool for red teaming, security research, and whatever else.

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

Public Repo for Atomic Test Harness

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

A simple ptrace-less shared library injector for x64 Linux

Purpleteam scripts simulation & Detection - trigger events for SOC detections

Kill AV/EDR leveraging BYOVD attack

Bluetooth keystroke injection exploit PoCs for CVE-2023-45866, CVE-2024-21306, and CVE-2024-0230 targeting Android, Linux, macOS, and iOS via…

Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

A delicious, but malicious SSL-VPN server 🌮

The code for ACM MM2024 (Multimodal Unlearnable Examples: Protecting Data against Multimodal Contrastive Learning)

Reverse Shell Detection with Machine Learning