
BOF_RunPe
BOF to run PE in Cobalt Strike Beacon without console creation

BOF to run PE in Cobalt Strike Beacon without console creation

Windows LPE exploit for CVE-2021-40449, a use-after-free in win32kfull!GreResetDCInternal, leveraging token leaking, kernel gadget abuse, and…

Proof-of-concept exploit for CVE-2024-1065, demonstrating page cache exploitation via a use-after-free in the ARM Mali GPU kernel driver to achieve…

Manual kernel driver mapper for Windows x64 that abuses CVE-2025-8061 in Lenovo's LnvMSRIO.sys to perform a BYOVD attack, mapping PE64 drivers into…

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

My experiments in weaponizing Nim (https://nim-lang.org/)

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

SharpSploit is a .NET post-exploitation library written in C#

Hide your Powershell script in plain sight. Bypass all Powershell security features

.NET, PE, & Raw Shellcode Packer/Loader Written in Nim

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Hershell is a simple TCP reverse shell written in Go.

A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and remote…

CVE-2017-11882 Exploit accepts over 17k bytes long command/code in maximum.

RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.