
DcRat
A simple remote tool in C#.

A vulnerable driver exploited by me (BYOVD) that is capable of terminating several EDRs and antivirus software in the market, rendering them…

Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking

In-depth reverse engineering analysis of Lumma Stealer, an info-stealer using process hollowing, Native API calls, and C2 communication. Includes…

Some Rust program I wrote while learning Malware Development

PoC for CVE-2026-3609 - XIGNCODE3 xhunter1.sys handle leak enabling PPL bypass and LSASS dumping

A collection of hacking / penetration testing resources to make you better!

Documentation of CVE-2020-36603: a local privilege escalation vulnerability in the Genshin Impact mhyprot2.sys anti-cheat driver allowing…

Proof-of-concept exploit for CVE-2025-29824, a use-after-free vulnerability in the Windows CLFS kernel driver, demonstrating privilege escalation to…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

The swiss army knife of LSASS dumping

Collection of various malicious functionality to aid in malware development

A collection of awesome penetration testing resources, tools and other shiny things

Curated collection of EDR bypass resources including PoCs, tools, workshops, presentations, and blogs for ethical hacking and red team operations.

CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration