
dismember
:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

CVE-2025-5777 Citrix NetScaler Memory Leak Exploit (CitrixBleed 2)

Easy-to-use live forensics toolbox for Linux endpoints

ShadowNet is an anonymous routing protocol that forces all connections (system-wide) to go through Tor while implementing Mixnet-like…

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

Toy scripts for playing with WinDbg JS API

Software sandbox for storage of sensitive information in memory.

GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux

LPE due to integer truncation in vskrnlintvsp.sys

Adaptation of Cassowary CVE-2024-23222 for Linux x86_64

Browser exploitation framework for Chakra (Edge). Written as part of OSEE preparation. Demo bug: CVE-2019-0567

Golang bindings for PE-sieve

Proof-of-concept exploit for CVE-2026-31431 (Copy-Fail), a Linux kernel AF_ALG and splice() flaw enabling page cache poisoning and local privilege…

Retrieves the master password from Keepass memory dump, using a hint of bruteforce.

Exploit tool for CVE-2025-14847, a MongoDB memory disclosure vulnerability, enabling multi-threaded extraction of sensitive data and secrets from…