
CyberStrikeAI
The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

My experiments in weaponizing Nim (https://nim-lang.org/)

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs

A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, without…

Generate Payloads and Control Remote Machines. [Discontinued]

poc for CVE-2025-24252 & CVE-2025-24132

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

PoC for CVE-2026-58635: Windows Narrator Braille Local Privilege Escalation

Evince/xreader/Atril RCE exploit to CVE-2026-46529

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…