Skip to content
View fmarl's full-sized avatar
🖥️
We had joy, we had fun, we ran Unix on a Sun...
🖥️
We had joy, we had fun, we ran Unix on a Sun...

Block or report fmarl

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Main Sigma Rule Repository

Python 10,580 2,646 Updated Jun 15, 2026

Ongoing collection of shellcode samples to be added to. Password: shellcode

2 Updated Jul 12, 2025

This framework enables user to discover JOP gagdets and can automate building a complete JOP chain to bypass DEP. JOP ROCKET is the ultimate solution for Windows jump-oriented programming. JOP ROCK…

Python 116 20 Updated Aug 31, 2024

SHAREM is a shellcode analysis framework, capable of emulating more than 45,000 WinAPIs and virutally all Windows syscalls. It also contains its own custom disassembler, with many innovative featur…

Python 483 68 Updated Mar 22, 2026

Fast web fuzzer written in Go

Go 16,241 1,571 Updated Apr 26, 2026

Manual mapper that uses PTE manipulation, Virtual Address Descriptor (VAD) manipulation, and forceful memory allocation to hide executable pages. (VAD hide / NX bit swapping)

C 406 97 Updated Jan 29, 2022

An script to perform kerberos bruteforcing by using impacket

Python 458 77 Updated Apr 6, 2022

A curated list of awesome OSCP resources

3,421 720 Updated Apr 28, 2024

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

JavaScript 2,226 217 Updated Jun 14, 2026

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Python 5,231 788 Updated May 19, 2026

Exploits written by the Rhino Security Labs team

Python 1,101 295 Updated Jan 23, 2021

A collection of scripts for assessing Microsoft Azure security

PowerShell 2,388 338 Updated Mar 15, 2026

Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device.

Python 3,356 1,052 Updated Nov 1, 2025

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

C# 20,001 3,365 Updated Jun 15, 2026

⚡A CLI tool for code structural search, lint and rewriting. Written in Rust

Rust 14,516 394 Updated Jun 15, 2026

"Bypassing" HVCI via donor PFN swaps to modify read-only code pages. Call chained kernel functions (kCET and SLAT support), and more.

C 127 15 Updated Mar 16, 2026

Discover hidden debugging parameters and uncover web application secrets

JavaScript 249 7 Updated Feb 4, 2026

Kaitai Struct: declarative language to generate binary data parsers in C++ / C# / Go / Java / JavaScript / Lua / Nim / Perl / PHP / Python / Ruby / Rust

Shell 4,625 207 Updated Jun 15, 2026

This repository contains scripts, configurations and deprecated payload loaders for Brute Ratel C4 (https://bruteratel.com/)

C 295 38 Updated Aug 5, 2024

PowerSploit - A PowerShell Post-Exploitation Framework

PowerShell 13,025 4,717 Updated Aug 17, 2020

Adversary Emulation Framework

Go 11,367 1,519 Updated Jun 3, 2026

Impacket is a collection of Python classes for working with network protocols.

Python 15,819 3,921 Updated Jun 11, 2026

.NET 4.0 CLR Project to retrieve Chromium data, such as cookies, history and saved logins.

C# 757 105 Updated Oct 23, 2020

A little tool to play with Windows security

C 21,629 4,131 Updated Apr 17, 2026

Passive hostname, domain and IP lookup tool for non-robots

Python 1,811 83 Updated Apr 21, 2026

Code signing and transparency for containers and binaries

Go 6,041 753 Updated Jun 15, 2026

Lab used for workshop and CTF

PowerShell 520 57 Updated Feb 3, 2026

Android kernel exploit for CVE-2025-38352, previously exploited in-the-wild. Targets vulnerable x86_64 Linux kernels v5.10.x.

C 299 46 Updated Jan 5, 2026

Recent Fuzzing Paper

2,759 372 Updated Mar 19, 2026
Next