
donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Burp Plugin to Bypass WAFs through the insertion of Junk Data

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609,…

A VBA implementation of the RunPE technique or how to bypass application whitelisting.

Tests your WAF with +160 payloads

Stealthy IIS backdoor using hidden ISAPI filter for persistent remote access, data exfiltration, and on-the-fly exploit injection via custom HTTP…

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free

Proof-of-concept tool demonstrating MITM attack to strip SSL/TLS from MySQL connections, exploiting CVE-2015-3152 for network penetration testing.

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

CVE‑2025‑55182 Detection

Using IPv6 to Bypass Security