
MassDriver
Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

Multifunctional java deobfuscation tool suite

Open source Windows x64 PE packer and crypter. Compresses and encrypts executables with a custom virtual machine into a self extracting stub.

PoC Implementation of a fully dynamic call stack spoofer

PE loader with various shellcode injection techniques

DLL sideloading/proxying with Nim!

Automated scanner for discovering DLL search order hijacking candidates in Windows executables, featuring import table parsing, runtime module…

Create Anti-Copy DRM Malware

Proof-of-concept exploit for a Java gadget chain in the Mojarra library, demonstrating deserialization vulnerability exploitation for versions 2.3…

Exploiting the .lnk vulnerability and operating system handling mechanisms regarding explorer.exe and USB drives.


notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)

LoadLibrary for offensive operations

Some Rust program I wrote while learning Malware Development

ELF binary section docking toolkit for stageless payload delivery, enabling in-field payload attachment, signature evasion, and static/dynamic…

A C# PE loader for x64 and x86 PE files.

A tool for extracting, modifying, and crafting ASDM binary packages (CVE-2022-20829)