
CVE-2025-34096
SEH-based buffer overflow in Easy File Sharing Web Server 7.2, reachable through the password recovery endpoint.

SEH-based buffer overflow in Easy File Sharing Web Server 7.2, reachable through the password recovery endpoint.

BOF to run PE in Cobalt Strike Beacon without console creation

Windows LPE exploit for CVE-2021-40449, a use-after-free in win32kfull!GreResetDCInternal, leveraging token leaking, kernel gadget abuse, and…

Proof-of-concept exploit for CVE-2024-1065, demonstrating page cache exploitation via a use-after-free in the ARM Mali GPU kernel driver to achieve…

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

My experiments in weaponizing Nim (https://nim-lang.org/)

Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors

Collection of various malicious functionality to aid in malware development

.NET, PE, & Raw Shellcode Packer/Loader Written in Nim

EternalBlue suite remade in C/C++ which includes: MS17-010 Exploit, EternalBlue vulnerability detector, DoublePulsar detector and DoublePulsar…

MeterSSH is a way to take shellcode, inject it into memory then tunnel whatever port you want to over SSH to mask any type of communications as a…

SharpSploit is a .NET post-exploitation library written in C#

Hide your Powershell script in plain sight. Bypass all Powershell security features

Hershell is a simple TCP reverse shell written in Go.

RedPeanut is a small RAT developed in .Net Core 2 and its agent in .Net 3.5 / 4.0.

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

Combines AppDomain Manager injection with shellcode embedding in signed binaries to evade EDR/AV detection for red team payloads.