
OffensiveNim
My experiments in weaponizing Nim (https://nim-lang.org/)

My experiments in weaponizing Nim (https://nim-lang.org/)

C# based tool which automates the process of discovering and exploiting DLL Hijacks in target binaries. The Hijacked paths discovered can later be…

Script that automates the process of escalating privileges on openbsd system (CVE-2019-19520) by exploiting the xlock binary and againing it's sgid…

A Bash script that downloads and unzips scripts that will aid with privilege escalation on a Linux system.

A lightweight, portable, and modular tool for Linux enumeration and privilege escalation.

An AWS IAM policy statement parser and query tool.

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

Injects C# EXE or DLL Assembly into every CLR runtime and AppDomain of another process.

Local privilege escalation PoC for Windows CVE-2026-66804 using CrossDevice DLL planting and SigmaPotato token impersonation to spawn a SYSTEM…

Kernel Mode Driver for Elevating Process Privileges

C# tool for LSASS minidump with multiple evasion techniques including indirect syscalls, ETW patching, and PPL bypass via driver or WER fault.…

Firefox content-to-parent IPDL privilege escalation (N-day, bug 2054416): forged PDocumentChannel with RemoteTypeOverride -> privilegedabout process…

Proof-of-concept exploit for Docker Desktop for Windows privilege escalation (CVE-2020-11492). Uses named pipe impersonation to steal SYSTEM token…

Windows x64 handcrafted token stealing kernel-mode shellcode

Docker CVE-2022-37708

Penetration testing utility and antivirus assessment tool.

Windows tool to list, get, set, protect, and unprotect process protection levels (PP/L) for debugging, inspection, and privilege escalation.

Exploits CVE-2019-16098 in the RTCore64.sys driver to escalate from a low-privileged account to SYSTEM by copying the System process token.