
PolyEngine
PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV…

PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV…

Python AV Evasion Tools

ELF binary section docking toolkit for stageless payload delivery, enabling in-field payload attachment, signature evasion, and static/dynamic…

Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.

Run Beacon Object Files (BOFs) outside Cobalt Strike by parsing 64-bit COFF object files, with Beacon-compatible argument generation and helper…

PE loader with various shellcode injection techniques

A PoC project for embedding shellcode to Hint/Name Table

DLL sideloading/proxying with Nim!

Some Rust program I wrote while learning Malware Development

Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

CVE 2025 27237 Zabbix LPE proof of concept.

Reverse-engineered runtime engine for Roblox/Luau with VM hooking, opcode remapping, capability escalation, and UNC script environment for executing…

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs