


Config Extractor for Asyncrat/Dcrat/VenomRat

A new simple and powerfull packer for malware

Hive v5 file decryption algorithm

Static Decryptor for IcedID Malware

Demonstrates CVE-2026-1122 Ed25519 signature bypass via low-order point injection, forging malicious IoT firmware updates with Python and C verifier…

Tool to help guess a files 256 byte XOR key by using frequency analysis

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA

Padding oracle exploit for Oracle Access Manager (CVE-2018-2879) enabling decryption of encrypted cookies and encryption of arbitrary plaintext for…


CVE-2022-21449 Proof of Concept demonstrating its usage with a client running on a vulnerable Java version and a malicious TLS server

Exploitation of a vulnerability in Cisco's node-jose, a JavaScript library created to manage JWT.

repo showcasing generating "psychic signatures for java" implemented in a nodejs environment 😅

Proof-of-concept for CVE-2021-34558, demonstrating a TLS handshake panic in Go's crypto/tls via a malicious server with mismatched certificate and…

CurveBall CVE exploitation

PoC for CVE-2026-49230: Apache APISIX jwe-decrypt authentication bypass (missing AES-GCM tag validation, CWE-354, CVSS 9.1)

A Burpsuite plugin (BApp) to aid in the detection of scripts being loaded from over 23000 malicious cryptocurrency mining domains (cryptojacking).

Golang malware development library