
memscan
Searches for strings, regex, credit card numbers of magnetic stripe card tracks in a Windows process's memory space

Searches for strings, regex, credit card numbers of magnetic stripe card tracks in a Windows process's memory space

Golang bindings for PE-sieve

Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)

CVE-2017-13868: Information leak of uninitialized kernel heap data in XNU.

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

Educational analysis of CVE-2023-4863 (libwebp heap buffer overflow) with Blue Team detection tools, static WebP scanner, defensive Java validator,…

Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use…

DLL Injection tool to unlock guest VMs

Software sandbox for storage of sensitive information in memory.

A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC

GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.

Interrogate is a proof-of-concept tool for identification of cryptographic keys in binary material (regardless of target operating system), first and…

Proof of Concept for CVE-2021-33624

Proof of concept for CVE-2023-40294 and CVE-2023-40295

Proof of concept for CVE-2024-54756, a vulnerability I found in GZDoom's ZScript scripting engine.

A Proof Of Concept for CVE-2025-40019

A Linux version of the ProcDump Sysinternals tool

Proof of concept & details for CVE-2025-21298