
asminject
Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

Documentation and proof of concept code for CVE-2022-24125 and CVE-2022-24126.

Exploit POC for the bug CVE-2019-8781, found by @LinusHenze

Python exploit for CVE-2007-2447 that triggers Samba username map script command injection to open a reverse shell on vulnerable targets.

Buffer overflow in Sync Breeze Enterprise 10.0.28 allows remote attackers to have unspecified impact via a long username parameter to /login

Inject .NET assemblies into an existing process

Windows User-Mode Shellcode Development Framework (WUMSDF)

Practical Windows malware development course: API hashing, DLL sideloading, shellcode execution, PE manipulation, payload hosting, and delivery labs.

Use YARA rules on Time Travel Debugging traces

PoC demonstrating dyld as a PAC signing oracle via hand-crafted Mach-O chained fixups on arm64e, achieving controlled PAC-valid pointer writes and…

MS Word MS WordPad via IE VBS Engine RCE

CVE-2024-45436

CVE-2022-3552 RCE with detailed exploitation steps

Python-based exploit for MS08-067 (CVE-2008-4250) providing remote code execution via SMB with reverse shell payload generation and automatic target…

Go shellcode loader that combines multiple evasion techniques

Buffer overflow in FreeFloat FTP Server 1.0

Pseudo-malicious usermode memory artifact generator kit designed to easily mimic the footprints left by real malware on an infected Windows OS.