
Pokemon-Shellcode-Loader
Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.

A personalized/enhanced re-creation of the Darkhotel "Double Star" APT exploit chain with a focus on Windows 8.1 and mixed with some of my own…

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal Palace.

Static analysis walkthrough of a Metasploit Windows shellcode: PowerShell payload decoding, XOR obfuscation, PEB walking, and Export Address Table…

Collection of radare2 scripts for malware analysis: carve binaries from memory dumps, patch PE headers, and decode hashed function imports in…

CVE-2024-24576 Proof of Concept

A Proof of Concept for CVE-2023-50564 vulnerability in Pluck CMS version 4.7.18

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

D-Link DSL-3782 Code Execution (Proof of Concept)

Proof of concept python script for regreSSHion exploit.

CVE-2014-9322 (a.k.a BadIRET) proof of concept for Linux

Implementation of CVE-2022-0847 as a shellcode

A proof of concept of an SEH overflow with arbitrary dll injection

Recreating Shellshock (CVE-2014-6271) - the bash vulnerability that endangered millions of servers. Automated exploitation toolkit + Burp Suite…

Educational repository documenting the analysis and exploitation of CVE-2025-5548 (FreeFloat FTP Server buffer overflow). Includes a reusable…