
RunPE
C# Reflective loader for unmanaged binaries.

C# Reflective loader for unmanaged binaries.

A QoL tool to obfuscate shellcode. In the future will be able to chain encoding/encryption/compression methods.

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

Dynamic unpacker for Windows that hooks NT APIs to detect process hollowing, extracts injected PE implants, and uses guard pages to trace shellcode…

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

Swiss Army Knife for payload encryption, obfuscation, and conversion to byte arrays – all in a single command (14 output formats supported)! ☢️

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Tool and reference for decoding obfuscated PowerShell payloads, extracting Base64, GZip, and Deflate encoded shellcode for digital forensics and…

This is a custom ASCII AND/SUB Encoder developed during my preparation for the legacy OSCE/CTP course

Windows remote access tool with one-command client execution, file transfer, Meterpreter shellcode injection, and persistence via Task Scheduler and…

HTTP-based remote access tool with DLL injection, process hollowing, and system hooking for persistent control, screen monitoring, file exfiltration,…

GUI-based RCE exploit tool for React Server Components and Next.js (CVE-2025-55182). Supports command execution, memory shell injection, reverse…

Java Swing GUI tool for detecting and exploiting CVE-2025-55182 in Next.js. Supports batch scanning, command execution, memory shell injection, and…

Extensible exploitation framework with modular payload generation, auxiliary scanners, and post-exploitation agents for penetration testing and…

Automated Meterpreter payload generator and reverse shell exploit tool for remote exploitation of OS vulnerabilities, enabling post-exploitation…

Rust-based tool for executing .NET assemblies, PowerShell, BOFs, and PE files with patchless AMSI/ETW bypass and NTDLL unhooking. Supports encrypted…

Network traffic inspection tool that reassembles TCP/UDP flows and inspects them using regex, fuzzy string matching, shellcode detection (libemu),…

Universal stack-based buffer overfow exploitation tool