
Killer
Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

A dynamic unpacking tool

An architecture-agnostic ELF file flattener for shellcode

# CVE-2025-0282: Remote Code Execution Vulnerability in [StorkS]


C-shellcode to hex converter, handy tool for paste & execute shellcodes in IDA PRO, gdb, windbg, radare2, ollydbg, x64dbg, immunity debugger & 010…

Multi-cipher shellcode encryptor and obfuscator with automatic output conversion to C, C#, Rust, Nim, Python, and more. Supports ROT, XOR, RC4, AES,…

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

Fileless lateral movement tool using WMI Event Subscriptions to execute .NET assemblies in memory, with shellcode injection via named pipes for…

Patching ROP-encoded shellcodes into PEs

[CVE-2024-26581] Vulnerability Checker for BGN Internal

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

CVE-2024-10914 Shell Exploit

Freeze.rs is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls written in RUST

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

Multi-purpose proof-of-concept tool based on CPU-Z CVE-2017-15303

Windows memory-forensics and threat hunting tool that scans live process memory for malicious patterns, injection techniques, and reflectively loaded…