
Embedded-PDF
This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

Some scripts to abuse kerberos using Powershell

How to spoof the command line when spawning a new process from C#.

Demo project how to bypass the disable_functions security control of PHP on Linux

Script is a proof of concept how to control your machine by using social media sites.

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

An authentication bypass was recently discovered (https://www.webarxsecurity.com/vulnerability-infinitewp-client-wp-time-capsule/) on WP Time Capsule…

This is just a quick note on how to exploit these vulnerabilities to get root.

How to use PiDqSerializationWrite. Introduces how to safely read and write from mapped driver

A VBA implementation of the RunPE technique or how to bypass application whitelisting.

Python Remote Administration Tool (RAT)

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Kernel mode WinDbg extension and PoCs for token privilege investigation.

New generation of wmiexec.py

Credentials gathering tool automating remote procdump and parse of lsass process.

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects