
memdumper
Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

Exploit for CVE-2026-17544: PHP bcmath OOB write converted into memory-only RCE, bypassing disable_functions and open_basedir with a runtime…

An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW

NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection

Windows x64 handcrafted token stealing kernel-mode shellcode

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

In-memory Python loader for Beacon Object Files that executes COFF payloads, with packed/raw argument support for red-team and post-exploitation…

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

Dump cookies and credentials directly from Chrome/Edge process memory

This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone is created,…

Hijacks code execution via overwriting Control Flow Guard pointers in combase.dll

BYOVD Remove PPL for 24H2 and 25H2

This is the tool to dump the LSASS process on modern Windows 11

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

Red teaming tool to dump LSASS memory, bypassing basic countermeasures.

A fully implemented kernel exploit for the PS4 on 5.05FW