
redamon
An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

An AI-powered agentic red team framework that automates offensive security operations, from reconnaissance to exploitation to post-exploitation, with…

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

Demonstrates CVE-2022-34302, a Secure Boot bypass via the New Horizon Datasys signed bootloader whose built-in custom PE/COFF loader executes…

Demonstrates CVE-2022-34303 Secure Boot bypass via CryptoPro signed UEFI Shell, using the mm command to nullify gSecurity2 and load unsigned UEFI…

Windows privilege escalation tool that abuses SeImpersonatePrivilege via indirect syscalls, patching ETW and AMSI to elevate from service account or…

Exploit for CVE-2019-2215 to gain temporary root on Xiaomi MIUI devices, enabling bootloader unlock and system modifications.

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

Root your Galaxy using CVE-2026-43499

A PoC ransomware sample to test out your ransomware response strategy.

The FreeBSD ICMP buffer overflow, freebsd buffer overflow poc

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.

CVE-2026-0001. Do with your own risk

Configure your Pi Zero 2W to be a BadUSB

Critical path traversal to RCE vulnerability in Jellyfin Media Server (CVSS 9.9). Includes proof-of-concept exploit, technical analysis, and…

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Proof-of-concept exploit for CVE-2026-30345, an arbitrary file write in CTFd backup import, enabling persistent backdoor via .bashrc.
