
mimikittenz
A post-exploitation powershell tool for extracting juicy info from memory.

A post-exploitation powershell tool for extracting juicy info from memory.

Proof-of-concept exploit for CVE-2025-14847, a MongoDB zlib decompression vulnerability that leaks uninitialized server memory via crafted BSON…

Universal Windows extraction tool that detects unknown files and routes them to the right bundled extractor.

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

Grab ssh keys from ssh-agent

The swiss army knife of LSASS dumping

AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and…

A pure-Python library that lets you inspect, modify and search the memory of any running process in a few lines of Python :snake: .

The pstrip64.sys kernel driver exposes an IOCTL that allows low-privileged users to map arbitrary ranges of physical memory into their own virtual…

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

Proof of Concept exploit for CVE-2022-3699

PoC code for CVE-2017-13253

Bypasses PPL protection to dump LSASS process memory, obfuscates dump files with XOR, and exfiltrates them remotely via RAW or SMB without writing to…

OS X Auditor is a free Mac OS X computer forensics tool

Tool to make in memory man in the middle