
RemoteTLSCallbackInjection
Utilizing TLS callbacks to execute a payload without spawning any threads in a remote process

Utilizing TLS callbacks to execute a payload without spawning any threads in a remote process

A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and remote…

This is the main repository for metasm, a free assembler / disassembler / compiler written in ruby

Assist reverse tcp shells in post-exploration tasks

CVE-2017-11882 Exploit accepts over 17k bytes long command/code in maximum.

RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

indirect syscalls for AV/EDR evasion in Go assembly

A tool to generate obfuscated one liners to aid in penetration testing

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall…

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

WIP shellcode loader in nim with EDR evasion techniques

Swiss Army Knife for payload encryption, obfuscation, and conversion to byte arrays – all in a single command (14 output formats supported)! ☢️

Hijacks code execution via overwriting Control Flow Guard pointers in combase.dll

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.

Go package that aids in binary analysis and exploitation

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Local PE injection technique using hardware breakpoints and vectored exception handling to manipulate DLL loading and execute arbitrary payloads, as…