
ELFLoader
Loads and runs ELF objects entirely in memory across x86_64/x86 Linux systems, resolving libc symbols at runtime for stealthy post-exploitation…

Loads and runs ELF objects entirely in memory across x86_64/x86 Linux systems, resolving libc symbols at runtime for stealthy post-exploitation…

PoC for CVE-2025-59528 used to achieve remote code execution on the Silentium machine at HTB

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

The first analysis framework for CPU microcode

Cisco ASA Software and ASDM Security Research

Execute a payload at each right click on a file/folder in the explorer menu for persistence

Modern tactical exploitation toolkit.

Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall…

Attempt at Obfuscated version of SharpCollection

PoC demonstrating a multi process injection chain aimed at remotely executing shellcode

Dynamically invoke arbitrary unmanaged code

Tools for maintaining access to systems and proof-of-concept demonstrations.

Nuclei templates and exploit resources for CRLF based desync attacks

Miscellaneous exploit code

Tiny payload for transfer via LOKI - Provides high speed Virtual Channel two way file transfer capabilities

Various tools, PoCs and experiments related to my blog at https://www.forrest-orr.net/