
msf_shellcode_analysis
Static analysis walkthrough of a Metasploit Windows shellcode: PowerShell payload decoding, XOR obfuscation, PEB walking, and Export Address Table…

Static analysis walkthrough of a Metasploit Windows shellcode: PowerShell payload decoding, XOR obfuscation, PEB walking, and Export Address Table…

Pure Rust x86 hardware emulator and Windows process simulator for malware analysis, shellcode emulation, and payload unpacking. Supports 32/64-bit PE…

Polymorphic encryptor that transforms shellcode, PE, and COFF files into obfuscated, position-independent payloads with RC4 and random block cipher…

A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.

Python based tool for generating Shellcode from PIC C

Binary String Toolkit (BST). Quickly and easily convert binary strings for all your exploit development needs. 😎

.NET, PE, & Raw Shellcode Packer/Loader Written in Nim

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…

PE loader with various shellcode injection techniques

Dynamically extracts fresh syscall stubs from ntdll.dll to evade signature-based detection, with a shellcode execution template for Nim-based…

An architecture-agnostic ELF file flattener for shellcode

A PoC project for embedding shellcode to Hint/Name Table

Proxies sensitive API calls from shellcode to artifacts for CET-compatible clean call stacks, enabling stealthy payload execution and call stack…

Reverse engineering write-up of Python shellcode that APC-injects into AnyDesk, exfiltrates to a C2 over HTTPS with AES/RSA, and persists via…

Sickle - Payload Development Kit

CTF framework and exploit development library