
Mangle
Manipulates compiled executables (.exe/DLL) to evade EDRs by removing IoC strings, inflating file size, and cloning code-signing certificates for…

A unique technique to execute binaries from a password protected zip

PowerShell Remote Download Cradle Generator & Obfuscator

C-based XLL payload development for phishing campaigns, with techniques for delivery via ZIP containers, self-deletion, and evasion of AV/EDR and…

Generate an obfuscated DLL that will disable AMSI & ETW

Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory…

Automated CVE-to-PoC pipeline that polls vulnerability databases, generates canary-tokenized payloads from templates, cross-compiles artifacts, and…

Behavior-first WordPress CVE-2026-64638 scanner using benign login probes; classifies sanitizer behavior and generates alert-only PoCs for authorized…

Snort 3 IDS → IPS lab on Kali. Custom detection rules + iptables enforcement against ICMP recon, Nmap SYN scans, Hydra FTP brute force, and vsftpd…