
CVE-2025-50165-x64-Exploit
Generates weaponized JPEG files exploiting CVE-2025-50165 (Windows Graphics RCE) with custom x64 shellcode, heap spray, ROP chain, and AV/EDR evasion…

Generates weaponized JPEG files exploiting CVE-2025-50165 (Windows Graphics RCE) with custom x64 shellcode, heap spray, ROP chain, and AV/EDR evasion…

Rust Weaponization for Red Team Engagements.

AV/EDR evasion via direct system calls.

Converts PE into a shellcode

This program is designed to demonstrate various process injection techniques

Reflective PE packer.

C++ shellcode injection technique using XOR encryption and UUID string conversion to bypass Windows Defender, with function call obfuscation and…

IDPS & SandBox & AntiVirus STEALTH KILLER. MorphAES is the world's first polymorphic shellcode engine, with metamorphic properties and capability to…

Patching ROP-encoded shellcodes into PEs

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.


PoC for generating bthprops.cpl module designed to be loaded by Fsquirt.exe LOLBin

A simple PoC to invoke an encrypted shellcode by using an hidden call

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

Proof-of-concept exploit for CVE-2024-0311 bypassing Skyhigh Client Proxy policy via process injection and named pipe manipulation, with custom…

PoC and vulnerability report for CVE-2025-47827.

Blocking the DirtyFrag Linux LPE chain (CVE-2026-43284 / CVE-2026-43500) at runtime with a Cilium Tetragon TracingPolicy