
chakra-exploit-framework
Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

Modular exploit framework for CVE-2024-38077 (Windows RDL heap overflow) with ASLR bypass, heap grooming, ROP chain generation, and DLL injection…

ScareCrow - Payload creation framework designed around EDR bypass.

An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.

Frida-powered runtime mobile exploration toolkit for assessing iOS and Android app security. Bypass SSL pinning, dump keychains, manipulate heap…

Practice Go programming and implement CobaltStrike's Beacon in Go

morphHTA - Morphing Cobalt Strike's evil.HTA

Red Team engagement platform with the goal of unifying offensive tools behind a simple UI

Emulate and Dissect MSF and *other* attacks

Technical write-up and proof-of-concept for CVE-2026-8069, a local privilege escalation in Acer NitroSense and PredatorSense services, exploiting a…

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

HERCULES is a special payload generator that can bypass antivirus softwares.

Automated Tool That Generates The Perfect Meterpreter Powershell Payload

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

generate CobaltStrike's cross-platform payload

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

Fast C++ ROP gadget finder for PE/ELF/Mach-O binaries across x86/x64/ARM/ARM64 architectures, enabling efficient return-oriented programming chain…

A byte code analyzer for finding deserialization gadget chains in Java applications