
DNS-Persist
DNS-Persist is a post-exploitation agent which uses DNS for command and control.

DNS-Persist is a post-exploitation agent which uses DNS for command and control.

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

indirect syscalls for AV/EDR evasion in Go assembly

Packs C# assemblies, PE files, or shellcode into encrypted Nim binaries with advanced evasion features including AMSI/ETW bypass, sandbox detection,…

A PoC project for embedding shellcode to Hint/Name Table

A multi-arch assembly REPL and emulator for your command line.

Public repository for improvements to the EXTRABACON exploit

RCE exploit for CVE-2023-3519

A simple ptrace-less shared library injector for x64 Linux

Java-based exploit for CVE-2022-26134 that injects a Godzilla webshell into Confluence servers, enabling remote code execution with password and key…

Proof-of-Concept for CVE-2023-38146 ("ThemeBleed")

Static deobfuscator for Themida, WinLicense and Code Virtualizer 3.x's mutation-based obfuscation.

A helper utility for creating shellcodes. Cleans MASM file generated by MSVC, gives refactoring hints.

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.

Nim Library for Offensive Security Development

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

A bin2bin code virtualizer for x86-64 PE's