
GoPurple
Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

NAXSI is an open-source, high performance, low rules maintenance WAF for NGINX

OPNsense GUI, API and systems backend

ESP32DIV is a multi-purpose wireless offensive and defensive toolkit powered by an ESP32

Transforms UDP stream into (fake) TCP streams that can go through Layer 3 & Layer 4 (NAPT) firewalls/NATs.

A slightly more fun way to disable windows defender + firewall. (through the WSC api)

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

IEEE 802.11 Wi-Fi testing tool for protocol weakness exploitation, including beacon flooding, deauthentication, packet fuzzing, and IDS evasion.…

Convert Cobalt Strike profiles to modrewrite scripts

A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)

C++ self-Injecting dropper based on various EDR evasion techniques.

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

Tools and PoCs for Windows syscall investigation.

AWS WAF Solver, full reverse implemented in 100% Python & Golang.

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Generate Payloads and Control Remote Machines. [Discontinued]