
donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…


evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

Reflective PE packer.

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash

Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by utilizing…

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

Intel Management Engine JTAG Proof of Concept

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

Generate Payloads and Control Remote Machines. [Discontinued]

This is an exploit for CVE-2020-0674 that runs on the x64 version of IE 8, 9, 10, and 11 on Windows 7.

Simple POC for exploiting WhatsApp double-free bug in DDGifSlurp in decoding.c in libpl_droidsonroids_gif

Shellcode injection using the Windows Debugging API