
EvilMist
EvilMist is a collection of scripts and utilities designed to support cloud penetration testing & red teaming. The toolkit helps identify…

EvilMist is a collection of scripts and utilities designed to support cloud penetration testing & red teaming. The toolkit helps identify…

Cobalt Strike Beacon Object File that elevates an active beacon to SYSTEM and grants TrustedInstaller privileges through SetThreadToken token…

A basic emulation of an "RPC Backdoor"

Beacon Object File implementation of Event Viewer deserialization UAC bypass

Offensive Lua.

C# Targeted Attack Reconnissance Tools

WasmForge — compile Go and C# programs to single-binary, WASM-sandboxed native executables with polymorphic output.

Proof of concept exploit of Windows Update Orchestrator Service Elevation of Privilege Vulnerability

Win32k Exploit by Grant Willcox

Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.

A personal collection of Windows CVE I have turned in to exploit source, as well as a collection of payloads I've written to be used in conjunction…

Permanently disable EDRs as local admin

A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of my own…

A BOF to enumerate system process, their protection levels, and more.

Exploits Scripts and other tools that are useful during Penetration-Testing or Red Team engagement

BOF POC of the DSCourier project / invoking WinGet via COM

A fully automatic CVE-2019-0841 bypass targeting all versions of Edge in Windows 10.