
VBA-RunPE
A VBA implementation of the RunPE technique or how to bypass application whitelisting.

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609,…

Identify privilege escalation paths within and across different clouds

New generation of wmiexec.py

Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.

Burp Plugin to Bypass WAFs through the insertion of Junk Data

Windows protocol library, including SMB and RPC implementations, among others.

exp for https://research.checkpoint.com/extracting-code-execution-from-winrar

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC

Manipulate Chromecast Devices in your Network

Windows-based C2 research tool that uses Spotify playlists as a command channel and Telegram for output delivery, demonstrating cloud-assisted…