
SleepyCrypt
A shellcode function to encrypt a running process image when sleeping.

A shellcode function to encrypt a running process image when sleeping.

PoC demonstrating a multi process injection chain aimed at remotely executing shellcode

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Nim Library for Offensive Security Development

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Execute shellcode files with rundll32

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

Safari 1day RCE Exploit

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

🌒 Shell command obfuscation to avoid detection systems

Indirect syscalls + DInvoke made simple.

CVE-2020-0022 vulnerability exploitation on Bouygues BBox Miami (Android TV 8.0 - ARM32 Cortex A9)

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

Android 16 local privilege escalation exploit for realme RMX5200 using LD_PRELOAD-based preload.so chain to achieve temporary root access via…

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Proof-of-concept exploit for CVE-2024-0311 bypassing Skyhigh Client Proxy policy via process injection and named pipe manipulation, with custom…

Generates weaponized JPEG files exploiting CVE-2025-50165 (Windows Graphics RCE) with custom x64 shellcode, heap spray, ROP chain, and AV/EDR evasion…

Proof-of-Concept exploit for CVE-2025-14174 (EUVD-2025-203113) - Memory corruption in ANGLE allowing out-of-bounds access and RCE in web browsers.…