
Win32_Offensive_Cheatsheet
Win32 and Kernel abusing techniques for pentesters

Win32 and Kernel abusing techniques for pentesters

PoC-Malware-TTPs

Dropping a powershell script at %HOMEPATH%\Documents\WindowsPowershell\ , that contains the implant's path , and whenever powershell process is…

This is a repository of resource about Malware techniques

CompMgmtLauncher & Sharepoint DLL Search Order hijacking UAC/persist via OneDrive

macOS Initial Access Payload Generator

Windows x64 Ring 0 rootkit enabling DKOM process hiding, privilege elevation, driver swapping, and anti-malware evasion by redirecting file…

Supershell C2 远控平台,基于反向SSH隧道获取完全交互式Shell

New generation of wmiexec.py

Blog post exploring macOS App Sandbox, entitlements via codesign, and sandbox escape techniques using launchd, LaunchAgents, and quarantine…

Educational deep dive into macOS app bundles, plist files, and launchd process behavior, with offensive security notes on packaging payloads as .app…

A PoC for achieving persistence via push notifications on Windows

For when DLLMain is the only way

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI


Generate a proxy dll for arbitrary dll


Tools for maintaining access to systems and proof-of-concept demonstrations.