
nimvoke
Indirect syscalls + DInvoke made simple.

Indirect syscalls + DInvoke made simple.

Zeek package to detect CVE-2021-1675 (PrintNightmare) by monitoring named pipes and RPC operations for spoolss exploitation attempts.

Stealth Windows process enumeration PoC that lists PIDs using NTFS via NtQueryInformationFile, bypassing standard monitoring APIs and enabling EDR…

SOCKS5-to-HTTP proxy bridge that tunnels arbitrary TCP streams (SSH, SMTP, TLS) through standard HTTP requests, enabling network traffic obfuscation…

IP obfuscator made to make a malicious ip a bit cuter

A simple script just made for self use for bypassing 403

A simple BOF that frees UDRLs

A script to configure a TP-Link MR3040 running OpenWRT into a simple, yet powerful penetration-testing "dropbox".

C++ self-Injecting dropper based on various EDR evasion techniques.

Platform independent peCloak fork based on Capstone

Chisel new generation, written in rust. SSH under WSS with some customization.

Let's help websites stay safe until they are properly patched!

A VBA implementation of the RunPE technique or how to bypass application whitelisting.

OPNsense GUI, API and systems backend

Reproduces CVE-2025-29927 middleware authorization bypass in Next.js 14.2.24 and demonstrates exploitation with curl to bypass authentication and…

LimeRAT | Simple, yet powerful remote administration tool for Windows (RAT)

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能,…

Detection and Mitigation script for CVE-2021-42717 -> ModSecurity DoS Vulnerability in JSON Parsing