
ExecIT
Execute shellcode files with rundll32

Execute shellcode files with rundll32

Evades AV and sandboxes on Windows using anti-sandbox checks, ntdll unhooking, dynamic API resolution, and multi-layer shellcode obfuscation…

Indirect syscalls + DInvoke made simple.

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.

Evaluation framework for studying LLM agents that automatically generate working exploits from vulnerability reports, bypassing modern security…

Security research and reproduction of CVE-2025-5548: A stack-based buffer overflow in FreeFloat FTP Server 1.0. Includes binary analysis, crash…

An Interactive Binary Patching Plugin for IDA Pro

Inject a shared library (i.e. arbitrary code) into a live linux process, without ptrace

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

An Bash&Python Script For Generating Payloads that Bypasses All Antivirus so far [FUD]

A collection of my shellcode samples.

Header-only C++2x compile-time assembler for x86/x86-64 instruction encoding

Proof of concept for CVE-2024-54756, a vulnerability I found in GZDoom's ZScript scripting engine.

Android kernel exploit for CVE-2026-43499 (Futex-PI use-after-free) that gains temporary root on Xiaomi XIG04 to enable ADB. Includes automated…

A PoC exploit for CVE-2025-32463 - Sudo Privilege Escalation