Skip to content
View S3lrius's full-sized avatar

Block or report S3lrius

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Reattempt of BlueHammer disclosed in April 2026

C++ 31 10 Updated Apr 9, 2026

usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to map your driver over. the main focus of this project is to p…

C++ 481 76 Updated Jan 3, 2022

The agent that grows with you

Python 59,739 7,953 Updated Apr 12, 2026

Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.

C 73 4 Updated Dec 15, 2025

LLM Frontend for Power Users.

JavaScript 25,540 5,073 Updated Apr 11, 2026

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

C 59 4 Updated Apr 9, 2026

Repository hosting the bluehammer vulnerability

C 949 347 Updated Apr 9, 2026

BOF for Havoc that copies locked Windows files (SAM, SYSTEM, NTDS.dit) via raw MFT parsing — no VSS, no Registry APIs, no PowerShell

C 116 6 Updated Apr 6, 2026

Manipulation of Toast Notifications to social engineer the user to visit links, harvest credentials etc.

C# 39 2 Updated Mar 24, 2026

A collection of DESIGN.md files inspired by popular brand design systems. Drop one into your project and let coding agents generate a matching UI.

43,973 5,489 Updated Apr 11, 2026

Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by BeichenDream.

C 125 16 Updated Apr 10, 2026

Windows Analysis and Research Toolkit

C++ 167 17 Updated Apr 10, 2026

BOF-PE that zips and downloads the contents of a directory

Rust 5 Updated Apr 6, 2026

💀 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp…

Python 3,659 460 Updated Apr 10, 2026

Dynamic unpacker based on PE-sieve

C 804 76 Updated Apr 1, 2026

NTLM HTTP relay tool with SOCKS proxy for browser session hijacking

Python 126 7 Updated Apr 6, 2026

AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.

Python 1,691 295 Updated Apr 7, 2026

The repo is finally unlocked. enjoy the party! The fastest repo in history to surpass 100K stars ⭐. Join Discord: https://discord.gg/5TUQKqFWd Built in Rust using oh-my-codex.

Rust 181,633 107,247 Updated Apr 12, 2026

Havoc C2 BOF — WFP kernel-space SYSTEM escalation + command execution with indirect syscalls, patchless AMSI/ETW bypass, and return address spoofing

C 64 5 Updated Mar 22, 2026

Protect against malicious code installed via npm, yarn, pnpm, npx, pnpx, pip, uv and poetry with Aikido Safe Chain. Free to use, no tokens required.

JavaScript 1,113 55 Updated Apr 11, 2026

Free educational content on reverse engineering and malware analysis from the FLARE team

JavaScript 805 53 Updated Mar 31, 2026

An Ansible collection that installs an SCCM deployment with optional configurations.

PowerShell 14 Updated Apr 2, 2026

Reimplementing Havoc Pro Runtime Channel Switching and Cobalt Strike UDC2 features.

C 22 2 Updated Apr 7, 2026

Example extensions for CrystalC2

C 7 Updated Mar 28, 2026

Demonstrating 3 persistence layers from a single EXE, that converts itself into proxy DLLs at runtime

C 80 10 Updated Mar 29, 2026

Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.

C 50 3 Updated Mar 30, 2026

A Ligolo-ng JavaScript agent working inside Chrome & Chromium-based browsers by leveraging Isolated Web Applications.

TypeScript 116 6 Updated Mar 30, 2026

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

Python 128 6 Updated Apr 6, 2026

A SAST skill that gives AI coding agents structured vulnerability detection across 34 vulnerability classes.

213 24 Updated Apr 7, 2026

Open-source AI hackers to find and fix your app’s vulnerabilities.

Python 23,453 2,545 Updated Apr 10, 2026
Next