
chain-reactor
Generate Linux executables that simulate adversary behaviors and techniques for testing detection and response coverage. Consumes JSON for easy…

Generate Linux executables that simulate adversary behaviors and techniques for testing detection and response coverage. Consumes JSON for easy…

A diagnostic framework for measuring LLM vulnerability to Affective Contextual Erosion (ACE) and related liminal attack vectors. **Delirium** is not…

A payload delivery system which embeds payloads in an executable's icon file!

A font-based deception tool for red teaming, security research, and whatever else.

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

A windows token impersonation tool


An information security preparedness tool to do adversarial simulation.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows…

This is the tool to dump the LSASS process on modern Windows 11

Bypass llm guardrails by confusing it with fabricated tool output.

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

Playing around with Stratus Red Team (Cloud Attack simulation tool) and SumoLogic

A tool to find folders excluded from AV real-time scanning using a time oracle