
CVE-2021-3060
CVE-2021-3060

CVE-2021-3060
Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Rubber Ducky compatible clone based on CJMCU BadUSB HW.

A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA…

C++ self-Injecting dropper based on various EDR evasion techniques.

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

CVE-2014-1303 (WebKit Heap based BOF) proof of concept for Linux

This room is based on exploiting the notorious Log4j vulnerability ( CVE-2021-44228), also referred to as the Log4Shell. The weakness enables…

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

Python / C# Unmanaged PowerShell based RAT

Rust Weaponization for Red Team Engagements.

A memory-based evasion technique which makes shellcode invisible from process start to end.

A Bind Shell Using the Fax Service and a DLL Hijack

Python AV Evasion Tools

Brosec - An interactive reference tool to help security professionals utilize useful payloads and commands.

PoC for a sleep obfuscation technique leveraging waitable timers to evade memory scanners.

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Using CVE-2023-21768 to manual map kernel mode driver