
CVE-2022-26810
Remote code execution exploit for CVE-2022-26809 targeting Windows RPC heap buffer overflow with msfvenom shellcode integration and meterpreter…

Remote code execution exploit for CVE-2022-26809 targeting Windows RPC heap buffer overflow with msfvenom shellcode integration and meterpreter…

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

Manual kernel driver mapper for Windows x64 that abuses CVE-2025-8061 in Lenovo's LnvMSRIO.sys to perform a BYOVD attack, mapping PE64 drivers into…

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash

SharpSploit is a .NET post-exploitation library written in C#

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

Threadless Process Injection using remote function hooking.

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

C# Reflective loader for unmanaged binaries.

A simple ptrace-less shared library injector for x64 Linux

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

ShellcodeFluctuation PoC ported to Nim

Automates a CSRF attack against CVE-2024-34716 to deploy a PHP reverse shell on PrestaShop, with automated payload packaging and Netcat listener…

Armor is a simple Bash script designed to create encrypted macOS payloads capable of evading antivirus scanners.