
sniffles
Generates packet captures for testing IDS/IPS systems against fixed patterns and regular expressions, with support for Snort rules, random traffic,…

Generates packet captures for testing IDS/IPS systems against fixed patterns and regular expressions, with support for Snort rules, random traffic,…

Zip file format fuzzer and multi-tool.

Multi-loader tool for executing Metasploit payloads, Cobalt Strike External C2, and reflective DLLs with static evasion to bypass AV, enabling…

This repo covers some code execution and AV Evasion methods for Macros in Office documents

Intercept SSH connections with a patched OpenSSH proxy that logs plaintext passwords and full session data. Includes ARP spoofing victim discovery…

Post-exploitation tool for Windows that maintains persistence, subverts host event logging, and generates decoy network traffic using WinDivert…

Automated Wi-Fi deauthentication tool that continuously scans for clients on a target SSID and kicks non-whitelisted devices. Features whitelist…

IPv6 security assessment tool with Snort-evading attacks, TCP port scanning, and Slowloris support for penetration testing of IPv6 networks.

Modular antivirus evasion framework for Windows executables, supporting shellcode/DLL injection, process hollowing, encryption, sandbox evasion, and…

Red team tool for EDR evasion: dynamically resolves syscall IDs, patches ntdll stubs, unhooks IAT hooks, and lists hooked APIs from major EDR vendors.

IEEE 802.11 Wi-Fi testing tool for protocol weakness exploitation, including beacon flooding, deauthentication, packet fuzzing, and IDS evasion.…

Linux packet crafting tool for generating custom network attack signatures to test IDS/IPS, firewalls, and network defenses with support for IPv4,…

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

C++ tool for detecting AnyRun sandbox environments, enabling malware to evade dynamic analysis and automated sandboxing systems.

Security tool for testing firewall resistance to protocol-level attacks, including ALG exploitation, spoofed helper attacks, and DPI evasion using…

Red Team tool for covert file exfiltration via Bluetooth audio transmission, encoding binary data into FLAC signals to bypass EDR, XDR, and DLP…

CLI tool for live network traffic monitoring that detects nmap/Nikto scans, shellshock exploits, and cleartext credentials via pcap analysis.

Systematic discovery tool for kernel code paths that bypass LSM security guarantees via eBPF, io_uring, and mount API manipulation with zero audit…