
PISmith
PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses

PISmith: Reinforcement Learning-based Red Teaming for Prompt Injection Defenses

Open framework for RL-based prompt injection red teaming, with a shared trainer, curriculum learning, and benchmarks like AgentDojo, InjecAgent, and…

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Attack framework for breaking fine-tuning based prompt injection defenses (SecAlign, SecAlign++, StruQ) using architecture-aware adversarial attacks…

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

Red Team K8S Adversary Emulation Based on kubectl

C++ self-Injecting dropper based on various EDR evasion techniques.

Bypass Userland EDR hooks by Loading Reflective Ntdll in memory from a remote server based on Windows ReleaseID to avoid opening a handle to ntdll ,…

PoC MSI payload based on ASEC/AhnLab's blog post

A novel adversarial attack on LLM based on the Exponentiated Gradient Descent technique.

Fully automatic censorship removal for language models

Interpretability and explainability of data and machine learning models

Bluetooth keystroke injection exploit PoCs for CVE-2023-45866, CVE-2024-21306, and CVE-2024-0230 targeting Android, Linux, macOS, and iOS via…

An Open-Source Package for Textual Adversarial Attack.

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

A font-based deception tool for red teaming, security research, and whatever else.

A guided mutation-based fuzzer for ML-based Web Application Firewalls