
ExecuteAssembly
Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Rust Weaponization for Red Team Engagements.

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)

Source code for the book "Black Hat Python" by Justin Seitz. The code has been fully converted to Python 3, reformatted to comply with PEP8 standards…

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

A comprehensive Python exploitation framework for testing and demonstrating CVE-2025-3248, a critical unauthenticated remote code execution…

My experiments in weaponizing Nim (https://nim-lang.org/)

Collection of Offensive C# Tooling

Code execution/injection technique using DLL PEB module structure manipulation

Proof-of-concept for authenticated remote code execution in ClipBucket via PHP code injection in update_launch.php. Includes web shell deployment and…