
StepJack
Benchmarking framework for evaluating computer-use AI agents against multi-step indirect prompt injection, with automatic adversarial goal…

Benchmarking framework for evaluating computer-use AI agents against multi-step indirect prompt injection, with automatic adversarial goal…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

PoCs and tools for investigation of Windows process execution techniques

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.


Tools and PoCs for Windows syscall investigation.

Mutates signed Windows binaries to retain valid catalog signatures while changing file hashes, bypassing hash-based endpoint blocks and exposing…

A tool to find folders excluded from AV real-time scanning using a time oracle

Apply a divide and conquer approach to bypass EDRs

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

Loading Remote AES Encrypted PE in memory , Decrypted it and run it

Purpleteam scripts simulation & Detection - trigger events for SOC detections

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Detect EDR's exceptions by inspecting processes' loaded modules

Attempt at Obfuscated version of SharpCollection

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

C2 redirector base on caddy
