
AtomicSyscall
Tools and PoCs for Windows syscall investigation.

Tools and PoCs for Windows syscall investigation.

The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to…

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

Abuses Windows Filtering Platform to launch a console as NT AUTHORITY\SYSTEM or impersonate another logged-on user for privilege escalation during…

A tool to find folders excluded from AV real-time scanning using a time oracle

A productionized greedy coordinate gradient (GCG) attack tool for large language models (LLMs)

Open-source framework for red-teaming generative AI systems: automate attack prompts, score model responses, and audit behavior to identify security…

A diagnostic framework for measuring LLM vulnerability to Affective Contextual Erosion (ACE) and related liminal attack vectors. **Delirium** is not…

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…

Clusters and elements to attach to MISP events or attributes (like threat actors)

An information security preparedness tool to do adversarial simulation.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

This is the tool to dump the LSASS process on modern Windows 11

image scaling attacks for multi-modal prompt injection

A payload delivery system which embeds payloads in an executable's icon file!

Malware Mutation Using Reinforcement Learning and Generative Adversarial Networks

Bypass llm guardrails by confusing it with fabricated tool output.