
access_updated
Kernel-mode syscall wrapper with Zydis-based dynamic pattern finding for Windows 10/11

Kernel-mode syscall wrapper with Zydis-based dynamic pattern finding for Windows 10/11

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…

Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles

A bin2bin code virtualizer for x86-64 PE's

PoC for Acronis Arbitrary File Read - CVE-2022-45451

Proof-of-concept exploit for CVE-2025-69599, demonstrating uncontrolled search path element in RayVentory Scan Engine's rvia and ndtrack binaries,…

Automated bug bounty & recon framework — wraps Subfinder, Naabu, Httpx, Nuclei, Nmap, CVEMap, Gowitness, Katana & more behind a unified web UI

Anvil is a runtime-first attack surface assessment tool for Windows thick client applications, built for penetration testers and security researchers…

Robber is open source tool for finding executables prone to DLL hijacking

A byte code analyzer for finding deserialization gadget chains in Java applications

Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking,…