
DDexec
A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Build anti-detection Frida server from source. ~90 patches covering 16 detection vectors, weekly auto-builds with random names.

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

exploitdb // The official Exploit-Database repository

PE loader with various shellcode injection techniques

Compromising the macOS Kernel through Safari by Chaining Six Vulnerabilities

This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby

RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.

CVE-2020-15368, aka "How to exploit a vulnerable driver"

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

Windows x64 handcrafted token stealing kernel-mode shellcode

C# tool that generates malicious VBA macros with shellcode injection, VBA purging, and sandbox detection for red team operations.

Shellcode injection using the Windows Debugging API

CVE-2018-10933 very simple POC

A WebKit exploit using CVE-2018-4441 to obtain RCE on PS4 6.20.