
Split
Apply a divide and conquer approach to bypass EDRs

Apply a divide and conquer approach to bypass EDRs

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

WORK IN PROGRESS. RAT written in C++ using Win32 API

Work in Progress. RAT written in C++ using wxWidgets

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

On-demand reverse shell service that auto-detects target environment and executes appropriate payload for remote access during penetration tests.


coldfusion exploit based on https://cvedetails.com/cve/CVE-2009-2265/

Manual exploit for Firefox RCE CVE-2016-9079 with customizable shellcode, served via HTTP for remote code execution on vulnerable Windows systems.

Exploit for CVE-2022-42475, a pre-auth RCE in FortiOS SSL VPN. Supports validation, benign verification, and full exploitation with connect-back…

Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

Linux ELF x32/x64 ASLR DEP/NX bypass exploit with stack-spraying

Polymorphic shellcode generator for in-memory execution of EXE, DLL, .NET, VBScript, and JScript with per-output and per-build randomization for…

WIP shellcode loader in nim with EDR evasion techniques

Documentation and proof of concept code for CVE-2022-24125 and CVE-2022-24126.