
REW-sploit
Emulate and Dissect MSF and *other* attacks

Emulate and Dissect MSF and *other* attacks

Proof-of-concept reproduction of an nginx heap overflow and info leak (CVE-2026-42533) with two attack surfaces, debug analysis, and a full RCE chain.

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).


Temproot for Pixel 2 and Pixel 2 XL via CVE-2019-2215

PoCs and tools for investigation of Windows process execution techniques

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by…

Hardware breakpoint hooking engine for Windows that uses debug registers to hook functions, bypass ETW/AMSI, and evade user-land EDR monitoring.