
vbscan
OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

Hardware breakpoint hooking engine for Windows that uses debug registers to hook functions, bypass ETW/AMSI, and evade user-land EDR monitoring.

A black box, Ruby powered, Joomla vulnerability scanner

Slides and conference talks from security research covering Windows, virtualization, web, and blockchain exploit techniques, presented at Black Hat,…

AFL + DynamoRIO = fuzzing binaries with no source code on Linux

GUI based offensive penetration testing tool (Open Source)

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Mac OS X rootkit - for learning purposes

Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode…

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

Cisco ASA Software and ASDM Security Research

PoC code of Shade BIOS (stripped) presented at Black Hat USA 2025

Reverse engineering the TI AM3358 boot ROM

Presentation materials for my Black Hat USA 2022 Briefing and Arsenal talks

Automates incident response tasks via Carbon Black Response API: file/registry deletion, process killing, sensor isolation, binary collection, and…

This repository contains the sources and documentation for the SWAPGS attack PoC (CVE-2019-1125)

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

Curated collection of proof-of-concept vulnerability exploits and research presented at security conferences such as Black Hat and CODE BLUE.