
CVE-2026-2764-but-with-wasm
Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

Proof-of-concept exploit chain for Firefox JIT CVE-2026-2764, chaining JIT miscompilation and use-after-free into arbitrary read/write and WASM…

A shellcode function to encrypt a running process image when sleeping.

NASM Linux x86_64 pure (no deps) shared library (.so), POC for Reflective ELF SO injection

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

PoCs and tools for investigation of Windows process execution techniques

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

ShellcodeFluctuation PoC ported to Nim

Nim Library for Offensive Security Development

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

Apply a divide and conquer approach to bypass EDRs

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall…

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE