
patching
An Interactive Binary Patching Plugin for IDA Pro

An Interactive Binary Patching Plugin for IDA Pro

Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

PowerSploit - A PowerShell Post-Exploitation Framework

A tool to abuse Exchange services

Notion as a platform for offensive operations

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

A simple shell code encryptor/decryptor/executor to bypass anti virus.

Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.

SMBGhost (CVE-2020-0796) Automate Exploitation and Detection

Dynamic shellcode loader with sophisticated evasion capabilities

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

A bin2bin code virtualizer for x86-64 PE's

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Use YARA rules on Time Travel Debugging traces

Yet Another PHP Shell - The most complete PHP reverse shell

A foundational C library for building operationally credible offensive capabilities

Windows memory-forensics and threat hunting tool that scans live process memory for malicious patterns, injection techniques, and reflectively loaded…

Static analysis walkthrough of a Metasploit Windows shellcode: PowerShell payload decoding, XOR obfuscation, PEB walking, and Export Address Table…