
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Curated reading list and taxonomy of attack and defense research for mobile on-device AI systems, covering adversarial, backdoor, model stealing, and…

Research-only AI watermark robustness toolkit: local reverse proxy strips C2PA/EXIF/XMP, Unicode, image/audio stego, OOXML/PDF metadata, and scans…

Compares Windows archiver support for Mark of the Web propagation, helping teams assess which tools preserve MOTW and mitigate macro-based malware…

PoCs and tools for investigation of Windows process execution techniques

Improve your security and privacy by blocking ads, tracking and malware domains.

Purple-team telemetry & simulation toolkit.

Windows 11 24H2-25H2 Runtime PatchGuard Bypass

Research demonstration of indirect prompt injection attacks to control autonomous LLM-based web agents, with tools for trigger optimization and…

Curated list of backdoor learning papers, surveys, and toolboxes, organizing poisoning-based attacks and defenses in deep learning for researchers…

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by…

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

Lifetime AMSI bypass

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

PoC MSI payload based on ASEC/AhnLab's blog post

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

Malware Mutation Using Reinforcement Learning and Generative Adversarial Networks