
LibTP_Gadget
Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.

Crystal Palace library for proxying Nt API calls via the Threadpool. Updated for call gadgets.

Metasploit AV Evasion Tool

C-based PoC to bypass Windows PayloadRestrictions.dll and wdeg ROP mitigation, enabling payload execution and binary exploitation for security…

Python 3 exploit for CVE-2019-3980. Unauthenticated RCE as SYSTEM via SolarWinds Dameware MRC smart card authentication bypass.

Patching ROP-encoded shellcodes into PEs

IDPS & SandBox & AntiVirus STEALTH KILLER. MorphAES is the world's first polymorphic shellcode engine, with metamorphic properties and capability to…

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

Hide your Powershell script in plain sight. Bypass all Powershell security features

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Converts PE into a shellcode

Chimera is a PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.

Polymorphic binary encoder for offensive security payloads. Encodes shellcode with LFSR-based feedback loop, garbage instruction injection, and…

AV/EDR evasion via direct system calls.

Load/Inject .NET assemblies by; reusing the host (spawnto) process loaded CLR AppDomainManager, Stomping Loader/.NET assembly PE DOS headers,…

c++ fully undetected shellcode launcher ;)

C++ shellcode injection technique using XOR encryption and UUID string conversion to bypass Windows Defender, with function call obfuscation and…

Go shellcode loader that combines multiple evasion techniques

SysWhispers on Steroids - AV/EDR evasion via direct system calls.