
Starlink-FI
Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode…

Cisco ASA Software and ASDM Security Research

Black board CMS Escalation of Privileges

Presentation materials for my Black Hat USA 2022 Briefing and Arsenal talks

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

GUI based offensive penetration testing tool (Open Source)

CVE-2018-17553 PoC

A simple and scalable Android bot emulation framework, as presented at Black Hat Europe 2021's Arsenal, as well as atHack 2021's Arsenal

C2/post-exploitation framework

american fuzzy lop - a security-oriented fuzzer

Automates incident response tasks via Carbon Black Response API: file/registry deletion, process killing, sensor isolation, binary collection, and…

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras

This repository contains the sources and documentation for the SWAPGS attack PoC (CVE-2019-1125)

AFL + DynamoRIO = fuzzing binaries with no source code on Linux

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner