
RustyWater-ShellCode-Dropper
RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.
binary-exploitationcommand-and-controlexploitation+9

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Code execution/injection technique using DLL PEB module structure manipulation

My experiments in weaponizing Nim (https://nim-lang.org/)

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…