
CVE-2026-20685
CVE-2026-20685 - Draft or TODO

CVE-2026-20685 - Draft or TODO

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

Project Mantis: Hacking Back the AI-Hacker; Prompt Injection as a Defense Against LLM-driven Cyberattacks

RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers (CSPs)

A novel adversarial attack on LLM based on the Exponentiated Gradient Descent technique.

Tools and PoCs for Windows syscall investigation.

Code repository for CS5446 project exploring defenses against jailbreak attacks on large-language models it includes datasets, notebooks,…

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)

Terminate AV/EDR leveraging BYOVD attack

Meet Eclipse the only jailbreak that moonwalks around ChatGPT 4o.

A slightly more fun way to disable windows defender + firewall. (through the WSC api)


C++ self-Injecting dropper based on various EDR evasion techniques.

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

Kill AV/EDR leveraging BYOVD attack

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…
