
Bin-Finder
Detect EDR's exceptions by inspecting processes' loaded modules

Detect EDR's exceptions by inspecting processes' loaded modules

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Tools and PoCs for Windows syscall investigation.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

A productionized greedy coordinate gradient (GCG) attack tool for large language models (LLMs)

image scaling attacks for multi-modal prompt injection

A payload delivery system which embeds payloads in an executable's icon file!

Never ever ever use pixelation as a redaction technique

A PoC ransomware sample to test out your ransomware response strategy.

A Bumblebee-inspired Crypter

This is the tool to dump the LSASS process on modern Windows 11

A DNS spoofer tool written in Python3.

Weaponizing DCOM for NTLM Authentication Coercions

Malware Mutation Using Reinforcement Learning and Generative Adversarial Networks

Leak NTLM via Website tab in teams via MS Office

I Know Where Your Page Lives: Derandomizing the latest Windows 10 Kernel - ZeroNights 2016