
ROPInjector
Patching ROP-encoded shellcodes into PEs

Patching ROP-encoded shellcodes into PEs

Intel 64/Windows low-level experiments

Apply a divide and conquer approach to bypass EDRs

KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this project is to…

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Nim Library for Offensive Security Development

RustyWater represents the main payload and the backbone of the entire adversarial operation in Static Kitten group attacks.

Execute shellcode files with rundll32

Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

Deploy payloads to *Nix systems en masse

BOF to run PE in Cobalt Strike Beacon without console creation

Open source Windows x64 PE packer and crypter. Compresses and encrypts executables with a custom virtual machine into a self extracting stub.

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

Fileless x64 Assembly C2 framework with dual-channel ICMP/DNS protocol pivoting, direct syscall execution, and ptrace-based process injection for…


PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)