
ThreadlessInject
Threadless Process Injection using remote function hooking.

Threadless Process Injection using remote function hooking.

C# Reflective loader for unmanaged binaries.

An advanced in-memory evasion technique fluctuating shellcode's memory protection between RW/NoAccess & RX and then encrypting/decrypting its contents

UNIX-like reverse engineering framework and command-line toolset.

Multi-architecture assembler framework that converts assembly source into machine code for Arm, x86, MIPS, PowerPC, RISC-V, and more, with a…

CVE-2026-8452 PreAuth RCE

Study of a classic stack-based buffer overflow vulnerability in a controlled lab environment for educational purposes.

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.

PoCs and tools for investigation of Windows process execution techniques

Simulates the Windows PE loader to identify DLL hijacking vulnerabilities, generates weaponized DLLs with shellcode payloads, and detects UAC…

A standalone DLL that exports databases in cleartext once injected in the KeePass process.

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

A multi-arch assembly REPL and emulator for your command line.

bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

Palo Alto - CVE-2026-0300 exploit

Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.