
CVE-2023-41425-RCE-WonderCMS-4.3.2
Automates creation and hosting of a JavaScript XSS payload to install a malicious theme module, triggering a reverse shell via Remote Code Execution…

Automates creation and hosting of a JavaScript XSS payload to install a malicious theme module, triggering a reverse shell via Remote Code Execution…

Security research and reproduction of CVE-2025-5548: A stack-based buffer overflow in FreeFloat FTP Server 1.0. Includes binary analysis, crash…

A Linux kernel rootkit in Rust using a custom made type-2 hypervisor, eBPF XDP and TC programs

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Python based tool for generating Shellcode from PIC C

Rust Weaponization for Red Team Engagements.

Python AV Evasion Tools

NyxInvoke is a Rust CLI tool for running .NET assemblies, PowerShell, and BOFs with Patchless AMSI and ETW bypass features. with Dual-build support

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Execute shellcode files with rundll32

Playbook-based adversary simulation framework that compiles JSON-defined attack paths into position-independent shellcode payloads for validating…

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…


Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Reverse Shell Detection with Machine Learning

Windows x86 PoC: Stack‑based buffer overflow with custom shellcode on legacy 32-bit Windows.


A PoC exploit for CVE-2025-32463 - Sudo Privilege Escalation