
Boucle-framework
Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

Autonomous agent framework with structured memory, safety hooks, and loop management. Built by the agent that runs on it.

Debugger utilizing stealth hooks to hide from debugger detection

Kernel-runtime defense framework for AF_ALG vulnerabilities, featuring eBPF socket tracing, Ansible hardening, and a crypto auditor for drift…

CVE-2026-31431 "Copy Fail" - Analysis and defensive research for the Linux kernel AF_ALG privilege escalation vulnerability affecting all major…

An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.

A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concrete examples…


DejaVU - Open Source Deception Framework

PatrowlHears - Vulnerability Intelligence Center / Exploits

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

ROPfuscator is a fine-grained code obfuscation framework for C/C++ programs using ROP (return-oriented programming).

Emulate and Dissect MSF and *other* attacks

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

BOF combination of KillDefender and Backstab

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

Modular framework for Windows UAC bypass attacks and mitigation, featuring DLL hijacking, fileless execution, and real-time monitoring to detect and…

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.