
CVE-2026-2764-but-with-wasm
Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

基于Java实现的Shellcode加载器

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

A collection of various and sundry code snippets that leverage .NET dynamic tradecraft

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE

Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)

Dynamically invoke arbitrary unmanaged code

Hijacks code execution via overwriting Control Flow Guard pointers in combase.dll

Modern PIC implant for Windows (64 & 32 bit)

Abusing the win32k.sys kernel callback mechanism for arbitrary code execution

Windows User-Mode Shellcode Development Framework (WUMSDF)


Get your data from the resource section manually, with no need for windows apis
