
RedCloud-OS
RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers (CSPs)

RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers (CSPs)

Evasion kit for Cobalt Strike

Metasploit for machine learning.


Performing Indirect Clean Syscalls

Windows Defender Killer | Registry-Based Disablement + BYOVD Process Termination (C++)

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Open-source adversary emulation for AI agents and MCP servers.

kill anti-malware protected processes ( BYOVD )

HookChain: A new perspective for Bypassing EDR Solutions

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by…

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)


C++ self-Injecting dropper based on various EDR evasion techniques.

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

Bypassing UAC with SSPI Datagram Contexts

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…