
Lastenzug
Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)

Tools and PoCs for Windows syscall investigation.


Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

C++ self-Injecting dropper based on various EDR evasion techniques.

Source generator to add D/Invoke and indirect syscall methods to a C# project.


IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then reflective load…


OPNsense GUI, API and systems backend

IPv6 analysis tool: the other side

Convert Cobalt Strike profiles to modrewrite scripts

AWS WAF Solver, full reverse implemented in 100% Python & Golang.

A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.


This project demonstrates a Web Application Firewall (WAF) simulation using Flask and a vulnerability checker for CVE-2017-5638. The WAF middleware…