
memdumper
Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

open-source jailbreaking tool for many iOS devices

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

My experiments in weaponizing Nim (https://nim-lang.org/)

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

The swiss army knife of LSASS dumping

A post-exploitation powershell tool for extracting juicy info from memory.

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…


Dump cookies and credentials directly from Chrome/Edge process memory

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

Reflective PE packer.

An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

Kautilya - Tool for easy use of Human Interface Devices for offensive security and penetration testing.

Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)