
maldev-for-dummies
A workshop about Malware Development

A workshop about Malware Development

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

c++ fully undetected shellcode launcher ;)

EXOCET - AV-evading, undetectable, payload delivery tool

A fully implemented kernel exploit for the PS4 on 5.05FW

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

PIC-based Lsass memory dumper using cloned handles to evade detection, producing obfuscated dumps with minimal memory footprint for red team…

A Fully Undetectable C2 Server That Communicates Via Google SMTP to evade Antivirus Protections and Network Traffic Restrictions

CVE-2020-15368, aka "How to exploit a vulnerable driver"

indirect syscalls for AV/EDR evasion in Go assembly

Go shellcode loader that combines multiple evasion techniques

PoC demonstrating a multi process injection chain aimed at remotely executing shellcode

x64 Assembly injection engine using SROP and Zero-Copy Injection to bypass EDR/XDR and kernel monitors. Delivers XOR-encrypted payloads with minimal…

ASTROID v 1.2 bypass most A.V softwares


ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…

Evades AV and sandboxes on Windows using anti-sandbox checks, ntdll unhooking, dynamic API resolution, and multi-layer shellcode obfuscation…

Google Chrome CVE-2026-6307 PoC