
evilgrade
Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.

Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.

evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

A simple shell code encryptor/decryptor/executor to bypass anti virus.

** DISCONTINUED ** C2 framework that uses Background Intelligent Transfer Service (BITS) as communication protocol and Direct Syscalls + Dinvoke for…

Avoidz tool to bypass most A.V softwares

ARTi-C2 is a post-exploitation framework used to execute Atomic Red Team test cases with rapid payload deployment and execution capabilities via…

Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE

Proof-of-concept exploit for Windows CNG KeyIso RPC elevation of privilege and sandbox escape, demonstrating exploitation of CVE-2023-28229.

Using CVE-2021-40449 to manual map kernel mode driver

Polymorphic C2 framework with graphical interface, automatic reconnection, payload generation, and integrated hacking tools for red team operations…

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

PoC for WinNotify, demonstrated through a driver mapper, and local privilege escalation.

A modification to fortra's CVE-2023-28252 exploit, compiled to exe

Exploit for CVE-2021-31956, a Windows kernel privilege escalation vulnerability, targeting Windows 10 1903. Provides a proof-of-concept…

Compiled Windows SMBv3 local privilege escalation exploit targeting CVE-2020-0796 (SMBGhost). Tested on x64 Win10 1909.

Proof-of-concept validation harness for Electron boundary hardening, modeling renderer/main-process isolation, IPC policy enforcement, and navigation…

CVE-2021-1732 local privilege escalation exploit for Windows 10, with research and proof-of-concept code targeting kernel-mode vulnerabilities.