
MsfMania
Python framework for generating polymorphic Windows executables with multi-layer RC4 encryption, junkcode injection, and binary metadata spoofing to…

Python framework for generating polymorphic Windows executables with multi-layer RC4 encryption, junkcode injection, and binary metadata spoofing to…

PowerShell post-exploitation framework for red teaming: code execution, privilege escalation, persistence, credential dumping, exfiltration,…

Runtime tracer for Node.js malware analysis that hooks core modules, logs calls, spoofs anti-analysis checks, and captures file writes and HTTP…

ELF anti-reversing tool that overwrites section headers with nullbytes to prevent static analysis by disassemblers and debuggers, rendering functions…

Proof-of-concept exploit for CVE-2021-40346 demonstrating HTTP request smuggling against HAProxy to bypass access controls and reach restricted…

Embedded GRU neural network for real-time human behavior verification via mouse movement analysis, detecting automated analysis systems, sandboxes,…

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

Rust Weaponization for Red Team Engagements.

PowerShell scripts for communicating with a remote host.

Implementing Ghostly-Hollowing using tampered syscalls for remote PE injection

Covert DNS data exfiltration client-server implementing C2 command execution, encoding results into non-standard DNS sections for stealthy evasion.

Recreating Shellshock (CVE-2014-6271) - the bash vulnerability that endangered millions of servers. Automated exploitation toolkit + Burp Suite…

Simple shell script to automatically request new Tor identity at configurable intervals for IP rotation.

A Insecure direct object references (IDOR) vulnerability in "Simple 2FA Plugin for Moodle" by LMS Doctor

A demo of the CVE-2025-29927 vulnerability for a NebraskaJS lightning talk

Asynchronous reverse shell over HTTP/S that blends into normal web traffic using only GET requests, base64-encoded commands, and cookie-based…

Living Under the Land on Linux ~ Bsides Belfast/Vienna 2025

Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.