
donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…
exploitationids-ips-evasionmemory-forensics+6
4.7k

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Windows tool for dumping malware PE files from memory back to disk for analysis.

Dump the memory of a PPL with a userland exploit

Dump TeamViewer ID and password from memory. Works much better than other tools.

Windows Font Driver Type 1 VToHOrigin stack corruption

CVE-2026-46215 DRM GEM UAF Exploit for Linux 7.0 - The first working PoC for linux kernel 7 use after free- by Antonius (sw0rdm4n, w1sdom, ev1lut10n)

Toshiba Qiomem.sys vulnerable driver POC (CVE-2026-56129)

Retrieve the master password of a keepass database <= 2.53.1