Skip to content
View Ptkatz's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report Ptkatz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

New Amsi Patching Update

C# 8 Updated Jun 9, 2025

DCOM in memory and fileless lateral movement techniques through .Net deserilization

C# 145 15 Updated Jun 11, 2026

Alternate ways to create process through COM via IDispatch interface.

C 8 3 Updated Jul 11, 2023

Free deobfuscator for ConfuserEx.

C# 422 105 Updated Nov 27, 2025

This project leverages the legitimate "Netsh Helper DLL" functionality in Windows to execute malicious code (shellcode) within the context of the trusted netsh.exe process. Ideal for evasion and la…

C 3 Updated Sep 21, 2025

COM Windows Persistence Technique

C++ 86 11 Updated Apr 27, 2026

RoguePlanet Windows Defender Vulnerability

C++ 1,263 520 Updated Jun 9, 2026

AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs

TypeScript 47,311 4,484 Updated Jun 14, 2026

A tool uses the QoS Policy (Pacer.sys) to throttle Endpoint Detection and Response (EDR) agents from connecting to the server.

C# 228 42 Updated Jun 13, 2026

使用skill让 AI Agent 像安全分析师一样分析恶意样本 | AI Agent skill for automated malware analysis using IDA Pro

Python 169 28 Updated Apr 29, 2026

PoC for covert persistence via Windows Push Task Scheduler (WPTaskScheduler) RPC interface — invisible to schtasks, Get-ScheduledTask, and all standard enumeration tools. 利用 Windows Push Task Sched…

C 32 5 Updated Jun 8, 2026

CVE-2026-23631 (DarkReplica) Redis Exploit

Python 29 5 Updated Jun 2, 2026

Busybox-style Beacon Object Files for *nix post-exploitation. Reimplements common Unix utilities as BOFs for use in stripped environments (Docker containers, Kubernetes pods, minimal VMs) where no …

C 63 6 Updated May 6, 2026

AutoStart is a Windows persistence proof-of-concept that demonstrates how a program can survive reboots and logoffs using only legitimate, documented Win32 APIs.

C++ 4 Updated Feb 11, 2026

Shellcode loader using direct syscalls via Hell's Gate and payload encryption.

C 135 21 Updated Jun 16, 2024

754 structured cybersecurity skills for AI agents · Mapped to 5 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND & NIST AI RMF · agentskills.io standard · Works with Claude Code, GitHub …

Python 15,662 1,888 Updated Jun 1, 2026

Simple virtual machine for a stack-based assembler language written in C#.

C# 10 Updated Sep 2, 2017

A simple stack-based Virtual Machine in C#

C# 17 Updated Jun 23, 2017

🔮⚡️Vein is an open source high-level strictly-typed programming language with a standalone OS, arm and quantum computing support.

C# 56 5 Updated Jun 2, 2026

simple compiler based on mingw to build uncrackable windows application against analysis tools

C# 63 16 Updated Dec 22, 2017

Make WinForms Great Again !!! A wallbreaker from WinForm.NET to Blazor WASM with less than 10% C# source code modify. even it use GDI+.

C# 90 13 Updated May 19, 2026

Z00bfuscator is the simple, open-source, cross-platform obfuscator for .NET Assemblies built on .NET Core

C# 204 31 Updated Apr 11, 2024

A modern and open source .NET obfuscation engine for everyone.

C# 26 4 Updated Nov 30, 2024

Multi-architecture Linux privilege escalation toolkit with 19 pre-built and runtime-compilable exploits. Auto-detects kernel version, filters patched exploits, tries each until root.

C 79 15 Updated Jun 1, 2026

out-of-tree LLVM 21+ pass plugin for policy-driven IR obfuscation.

C++ 83 7 Updated Jun 13, 2026

Open Source implementation of PsPipeJack

C# 23 1 Updated May 27, 2026

lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection

HTML 330 28 Updated Apr 22, 2026

A PoC of the ContainYourself research presented in DEFCON 31, which abuses the Windows containers framework to bypass EDRs.

C++ 320 42 Updated Aug 31, 2023

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

C++ 426 14 Updated Jun 4, 2026
Next