
CyberStrikeAI
The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation…

Abuses macOS debugger entitlements and DYLD_INSERT_LIBRARIES to dump or search a running process's memory while shifting EDR attribution to a signed…

Dump lsass using only NTAPI functions by hand-crafting Minidump files (without MiniDumpWriteDump!!!)

Exploit for CVE-2026-17544: PHP bcmath OOB write converted into memory-only RCE, bypassing disable_functions and open_basedir with a runtime…

BYOVD Remove PPL for 24H2 and 25H2

Red teaming tool to dump LSASS memory, bypassing basic countermeasures.

Proof of concept exploit for CVE-2026-3775/CVE-2026-3780 and CVE-2026-57239 which lets you obtain NT AUTHORITY\SYSTEM rights via the Foxit PDF Reader…

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

Local Privilege Escalation PoC to pop a SYSTEM shell for CVE-2019-9702 in Symantec Encryption Desktop.

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Educational repository of offensive security source code: remote shells, ELF injectors, crypters, memory injection, and droppers for Linux,…

Linux LPE - Reliable Jail/Container Escape

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

Activation Context Hijacking Evasion Tool

This is the tool to dump the LSASS process on modern Windows 11

A Go implementation of PinTheft (CVE-2026-43494)

A BOF designed to inspect processes memory and addresses