
copyfail-arm64
Analysis and ARM64 reproduction of Copy Fail (CVE-2026-31431)

Analysis and ARM64 reproduction of Copy Fail (CVE-2026-31431)

EXOCET - AV-evading, undetectable, payload delivery tool

Analysis for stage1 shellcode loader from hacking

Comprehensive reverse engineering and exploitation of CVE-2019-17147, a stack buffer overflow in TP-Link TL-WR841N routers. Includes firmware…

Security research and reproduction of CVE-2025-5548: A stack-based buffer overflow in FreeFloat FTP Server 1.0. Includes binary analysis, crash…

Educational lab documenting step-by-step exploitation of CVE-2025-5548 (Stack Buffer Overflow) on Windows 11, from fuzzing and crash analysis to…

A workshop about Malware Development

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PoCs and tools for investigation of Windows process execution techniques

Create fake certs for binaries using windows binaries and the power of bat files

evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfvenom) by…

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

A variation of ProcessOverwriting to execute shellcode on an executable's section

An open-source, C#-based remote administration tool (RAT), enabling complete control of a remote Windows machine, designed for legitimate remote…

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.