
LaZagne
Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

Limon is a sandbox developed as a research project written in python, which automatically collects, analyzes, and reports on the run time indicators…

This repo contains instructions to reproduce CVE-2025-13425: Null Pointer dereference / Array over-indexing vulnerability that I found in Google's…

Callstack scanner that identifies IOCs of unpacked or injected C2 agents by analyzing thread idle behavior, unbacked memory, module stomping, APCs,…

DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.

Research project related to memory address analysis

The objective of this project was to assess a remote host for the Heartbleed vulnerability (CVE-2014-0160), verify its presence, and exploit it to…

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a malicious server…

Unofficial revival of the well known .NET debugger and assembly editor, dnSpy

Live hunting of code injection techniques

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

PoC memory injection detection agent based on ETW, for offensive and defensive research purposes

Linux 内核VMA-UAF 提权漏洞(CVE-2018-17182),0day

Golang bindings for PE-sieve

Escalating privilege in the system from unsigned driver using throttlestop vulnerability