
CVE-2026-43499-S26
Android GKI 6.12 kernel exploit for CVE-2026-43499, chaining an rt_mutex rollback bug with pselect stack overwrite to gain root on Samsung and Pixel…

Android GKI 6.12 kernel exploit for CVE-2026-43499, chaining an rt_mutex rollback bug with pselect stack overwrite to gain root on Samsung and Pixel…

Collection of radare2 scripts for malware analysis: carve binaries from memory dumps, patch PE headers, and decode hashed function imports in…

Custom PE loading and manipulation library for manual mapping, IAT hooking, memory dumping, and rebuilding imports for malware analysis and reverse…

Protect process by shellcode

Nim Library for Offensive Security Development

A multi-arch assembly REPL and emulator for your command line.

A dynamic unpacking tool

Simple dotnet Native AOT app that uses LibObjectFile to convert shellcode to ELF

Use YARA rules on Time Travel Debugging traces

Static analysis walkthrough of a Metasploit Windows shellcode: PowerShell payload decoding, XOR obfuscation, PEB walking, and Export Address Table…

Dynamically invoke arbitrary unmanaged code

Practical Windows malware development course: API hashing, DLL sideloading, shellcode execution, PE manipulation, payload hosting, and delivery labs.

Get your data from the resource section manually, with no need for windows apis

This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby


This repo stores necessary files for the analysis blog which will come soon

Analysis for stage1 shellcode loader from hacking

7-Zip XZ Decoder Heap Buffer Overflow - Full analysis, root cause, PoC, and RCE exploitation roadmap