Skip to content
View nickhakkz's full-sized avatar

Block or report nickhakkz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Tactical infrastructure mapping and attack visualization for offensive security operations

TypeScript 4 1 Updated Jan 27, 2026

A CET-compatible Windows x64 loader that produces fully backed call stacks through runtime function table manipulation, code cave injection, and inverted function table collapse.

C++ 116 14 Updated Jul 28, 2026

Erebus is an Initial Access wrapper for the Mythic Command & Control Server. It converts shellcode into payloads specifically used for phishing and IA operations.

Python 183 13 Updated Aug 19, 2026

A Cobalt Strike RL built with Crystal Palac; module overloading, NtContinue entry transfer, call stack spoofing, sleep masking, and static signature removal.

C 248 46 Updated Mar 15, 2026

Proof-of-concept exploit chain (CVE-2026-47301) for Microsoft Configuration Manager (SCCM), combining a broken access, CAB arbitrary-write path traversal, certificate verification bypass, and DLL h…

C# 84 10 Updated Aug 16, 2026

Workshop materials for “Step-by-Step Malware Development: Evading EDR from Loaders to the Kernel” presented at DEF CON 34 and BSidesLV 2026. Covers malware development, EDR Architecture, EDR evasio…

211 35 Updated Aug 16, 2026

Conference presentation slides

2,445 423 Updated Aug 7, 2026

Use NtProtectVirtualMemory in Ekko timers without needing to use stack pivoting or other RSP shifting tricks

C 77 7 Updated Aug 3, 2026

A centralized resource for previously documented WDAC bypass techniques

667 85 Updated Aug 6, 2026

ANIMO Azure Network Intel & Mission Ops a C2 based on Azure/Entra assessments

C++ 89 13 Updated Aug 7, 2026

Beacon Object File for LDAP Queries Through ADWS

C++ 37 3 Updated Jun 12, 2026

A collection of Azure AD/Entra tools for offensive and defensive security purposes

Python 2,699 390 Updated Aug 5, 2026

AES-256-CBC shellcode encryption tool.

C 21 3 Updated Jan 12, 2026

Deanonymize anyone based on their public commenting or posting history & pattern.

TypeScript 330 83 Updated Jun 15, 2026

A WinForms wrapper for Nightmare Eclipse's YellowKey exploit, automating the creation of USB recovery media to access previously inaccessible files on Windows 11 systems.

C# 18 4 Updated Jun 1, 2026

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

C++ 414 18 Updated Aug 14, 2026

A curated list of awesome Claude Skills, resources, and tools for customizing Claude AI workflows

Python 72,852 8,331 Updated Aug 10, 2026

A fast TCP/UDP tunnel over HTTP

Go 16,421 1,605 Updated Aug 9, 2026

BOF POC of the DSCourier project / invoking WinGet via COM

C++ 90 7 Updated Apr 23, 2026

DSCourier is a proof-of-concept that uses the WinGet Configuration COM API to apply DSC configurations through Microsoft-signed binaries.

PowerShell 210 26 Updated Jun 25, 2026

Object file loader implemented as a post-ex DLL for asynchronous BOF execution.

Nim 29 1 Updated Jul 23, 2026

Async BOF to automatically extract or renew Kerberos TGTs on a target system.

C 134 10 Updated Jul 23, 2026

A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique

C 183 16 Updated Apr 14, 2026

FaceDancer is an exploitation tool aimed at creating hijackable, proxy-based DLLs by taking advantage of COM-based system DLL image loading

Rust 449 53 Updated Apr 18, 2026

A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (Draugr)

C 138 7 Updated Jan 21, 2026

Cobalt Strike BOF for beacon/shellcode injection using fork & run technique with Draugr synthetic stack frames

C++ 157 24 Updated Nov 23, 2025

crystal palace + draugr function hook definition generator

Python 17 Updated Jan 27, 2026

Bof of RegPwn by MDSec

C 128 10 Updated Mar 15, 2026

Project for generating and identifying deceptive LNK files.

Python 379 50 Updated Aug 10, 2026
Python 103 23 Updated Sep 15, 2025
Next