
OffensiveVBA
This repo covers some code execution and AV Evasion methods for Macros in Office documents

This repo covers some code execution and AV Evasion methods for Macros in Office documents

A collection of proof-of-concept source code and scripts for executing remote commands over WinRM using the WSMan.Automation COM object

Writeup and code for CVE-2025-11492, CVE-2025-11493 - RCE in ConnctWise Automate RMM via Adversary-in-the-Middle

LSTAR - CobaltStrike Translated to EN

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

Code execution/injection technique using DLL PEB module structure manipulation

My experiments in weaponizing Nim (https://nim-lang.org/)

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

Proof-of-concept exploit for CVE-2021-1675 (PrintNightmare) targeting Windows Print Spooler. Uses msfvenom-generated malicious DLL delivered via SMB…

Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar

Pupy is an opensource, multi-platform (Windows, Linux, OSX, Android), multi function RAT (Remote Administration Tool) mainly written in python. It…

OSWE, OSEP, OSED, OSEE



Comprehensive red teaming notes covering offensive security techniques including code injection, defense evasion, lateral movement, and persistence,…

Common library for tools implementing GPO attack vectors

A "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version…

Check-LocalAdminHash is a PowerShell tool that attempts to authenticate to multiple hosts over either WMI or SMB using a password hash to determine…