
laZzzy
Shellcode loader demonstrating multiple execution techniques including direct syscalls, IAT evasion, encrypted payloads, PPID spoofing, and code…

Shellcode loader demonstrating multiple execution techniques including direct syscalls, IAT evasion, encrypted payloads, PPID spoofing, and code…

Shellcodes for Windows >= 11 x64

Windows User-Mode Shellcode Development Framework (WUMSDF)

Shellcode Compiler

PoCs and tools for investigation of Windows process execution techniques

bespoke tooling for offensive security's Windows Usermode Exploit Dev course (OSED)

micr0shell is a Python script that dynamically generates Windows X64 PIC Null-Free reverse shell shellcode.

PowerShell-based exploit for CVE-2014-4113 targeting x64 Windows systems with remote payload download and execution.

Shellcode injection using the Windows Debugging API

SSH-based reverse shell management tool with native SCP/SFTP support, multiple transport protocols, Windows DLL generation, and fileless execution…

A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vani…

golang script for bypass AV and work only in windows platform

Previously-0day exploit from the Hacking Team leak, written by Eugene Ching/Qavar.

Custom CAB template generator for CVE-2021-40444, crafting malicious cabinet archives to exploit Windows MSHTML remote code execution via crafted…

C-based PoC to bypass Windows PayloadRestrictions.dll and wdeg ROP mitigation, enabling payload execution and binary exploitation for security…

This is a proof-of-concept Metasploit module exploit for CVE-2015-1578, a buffer overflow vulnerability in Achat 0.150 beta7 on Windows. Exploitation…

Open source Windows x64 PE packer and crypter. Compresses and encrypts executables with a custom virtual machine into a self extracting stub.

A shellcode loader generator with support for multiple injection techniques, built for red team engagements.