
Dropper-GCleaner-C2-Infrastructure-Kernel-Driver-PowerShell-Conhost-Payload-Analysis
Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Cobalt Strike C2 Reverse proxy that fends off Blue Teams, AVs, EDRs, scanners through packet inspection and malleable profile correlation

Automatically spawn a reverse shell fully interactive for Linux or Windows victim

An extensible, end-to-end encrypted reverse shell that works across networks without port forwarding.


Proof of Concept for CVE-2025-15545

malware I found on my server

HRShell is an HTTPS/HTTP reverse shell built with flask. It is an advanced C2 server with many features & capabilities.

Rust Weaponization for Red Team Engagements.

Patch Binaries via MITM: BackdoorFactory + mitmProxy.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)

IKEv2, ikeext.dll, CVE-2026-33824, double free, heap grooming, ROP, SKF fragmentation, Windows exploit, anti-debug, obfuscation, API hooking,…

SOC336 - Windows OLE Zero-Click RCE Exploitation Detected (CVE-2025-21298) Walkthrough

Config extractor for AgentTesla - Discord/Telegram Variant

D-link AX1500 Vulnerability