
Amsi-Killer
Lifetime AMSI bypass

Lifetime AMSI bypass

BYOVD hunter to help prioritize windows drivers worth manual analysis

🦫 | GoRedOps is a repository dedicated to gathering and sharing advanced techniques and offensive malware for Red Team, with a specific focus on…

PowerShell toolkit for AMSI/Defender detection-boundary analysis and static malware triage maps byte offsets to detection triggers, plus YARA,…

autonomous red teaming platform; multi-agent offensive-security meta-harness

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and AV…

Some Rust program I wrote while learning Malware Development

Adaptix C2 agent using Crystal Palace PIC linker and PICO module system

takes shellcode bad-bytes and banishes them, returning cleaned shellcode with preserved functionalities

A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.

How to write a CrackMe for a CTF competition. Source code, technical explanation, anti-debugging and anti reverse-engineering tricks.

A monthly Windows PE baseline dataset for Cyber security researchers

LID — Linux Integrity Drift: Bypassing AppArmor via eBPF pathname rewriting. Pre-LSM syscall argument manipulation with zero audit footprint. "Linux…

The PoC of information disclosure in Microsoft Desktop Windows Management.

DLLirant is a tool to automatize the DLL Hijacking researches on a specified binary.

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.