
DEFCON-31-Syscalls-Workshop
Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

Convert shellcode into :sparkles: different :sparkles: formats!

Dynamic shellcode loader with sophisticated evasion capabilities

A C2 post-exploitation framework

Exploit for CVE-2021-40449 - Win32k Elevation of Privilege Vulnerability (LPE)

Pure Rust x86 hardware emulator and Windows process simulator for malware analysis, shellcode emulation, and payload unpacking. Supports 32/64-bit PE…

Various ways to execute shellcode

Patching ROP-encoded shellcodes into PEs

Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.

Herramienta para evadir disable_functions y open_basedir

Stealthy DLL proxying implant for Microsoft Teams that injects AES-encrypted shellcode via unhooking techniques, providing persistent backdoor access…

Simple executable generator with encrypted shellcode.

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

A shellcode function to encrypt a running process image when sleeping.

C# Reflective loader for unmanaged binaries.


poc for CVE-2025-24252 & CVE-2025-24132

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection