


On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.

ExploitGym is a large-scale, realistic benchmark built from real-world vulnerabilities designed to evaluate AI agents' ability to develop exploits.

Inject a shared library (i.e. arbitrary code) into a live linux process, without ptrace

SHAREM is a shellcode analysis framework, capable of emulating more than 45,000 WinAPIs and virutally all Windows syscalls. It also contains its own…

C# implementations of shellcode injection techniques including classic injection, thread hijacking, process hollowing, and atom bombing, using…

Various ways to execute shellcode

A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and remote…

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

基于Java实现的Shellcode加载器

Herramienta para evadir disable_functions y open_basedir

Inject .NET assemblies into an existing process

indirect syscalls for AV/EDR evasion in Go assembly

Windows User-Mode Shellcode Development Framework (WUMSDF)

PoC Thread Execution Hijacking for Win32 Code Injection

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post