Skip to content
View S3lrius's full-sized avatar

Block or report S3lrius

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Live ETW-TI event viewer for Windows kernel threat-intelligence telemetry. Research tool for exploring the same signals commercial EDRs rely on.

C++ 117 15 Updated Apr 15, 2026

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

C 117 17 Updated Apr 15, 2026

The Red Sun vulnerability repository

C++ 1,041 207 Updated Apr 15, 2026

Modular User-Defined Reflective Loader (UDRL) built on Crystal Palace for controlled DLL execution and evasion research.

C 12 1 Updated Apr 14, 2026

Object file loader implemented as a post-ex DLL for asynchronous BOF execution.

Nim 6 1 Updated Apr 16, 2026

Ground Station is all-in-one satellite monitoring suite

JavaScript 4,090 703 Updated Apr 16, 2026

A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique

C 119 12 Updated Apr 14, 2026

Automatic terminal session logging for Bash and Zsh. Captures every command, prompt, and output in real time, with per-session files, replay support, and optional cloud sync. Ideal for security exa…

Python 10 Updated Oct 7, 2025

The Mullvad VPN client app for desktop and mobile

Rust 6,989 464 Updated Apr 17, 2026

Reattempt of BlueHammer disclosed in April 2026

C++ 40 15 Updated Apr 9, 2026

usermode driver mapper that forcefully loads any signed kernel driver (legit cert) with a big enough section (example: .data, .rdata) to map your driver over. the main focus of this project is to p…

C++ 481 76 Updated Jan 3, 2022

The agent that grows with you

Python 95,305 13,318 Updated Apr 17, 2026

Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.

C 75 4 Updated Dec 15, 2025

LLM Frontend for Power Users.

JavaScript 25,800 5,114 Updated Apr 16, 2026

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

C 64 4 Updated Apr 9, 2026

Repository hosting the bluehammer vulnerability

C 1,419 519 Updated Apr 9, 2026

BOF for Havoc that copies locked Windows files (SAM, SYSTEM, NTDS.dit) via raw MFT parsing — no VSS, no Registry APIs, no PowerShell

C 118 6 Updated Apr 6, 2026

Manipulation of Toast Notifications to social engineer the user to visit links, harvest credentials etc.

C# 42 2 Updated Mar 24, 2026

A collection of DESIGN.md files inspired by popular brand design systems. Drop one into your project and let coding agents generate a matching UI.

57,342 7,116 Updated Apr 16, 2026

Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by BeichenDream.

C 189 21 Updated Apr 16, 2026

Windows Analysis and Research Toolkit

C++ 352 38 Updated Apr 14, 2026

BOF-PE that zips and downloads the contents of a directory

Rust 5 Updated Apr 6, 2026

💀 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp…

Python 3,662 459 Updated Apr 10, 2026

Dynamic unpacker based on PE-sieve

C 806 77 Updated Apr 14, 2026

NTLM HTTP relay tool with SOCKS proxy for browser session hijacking

Python 140 8 Updated Apr 6, 2026

AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.

Python 1,771 300 Updated Apr 16, 2026

The repo is finally unlocked. enjoy the party! The fastest repo in history to surpass 100K stars ⭐. Join Discord: https://discord.gg/5TUQKqFWd Built in Rust using oh-my-codex.

Rust 185,487 108,545 Updated Apr 17, 2026

Havoc C2 BOF — WFP kernel-space SYSTEM escalation + command execution with indirect syscalls, patchless AMSI/ETW bypass, and return address spoofing

C 64 5 Updated Mar 22, 2026

Protect against malicious code installed via npm, yarn, pnpm, npx, pnpx, pip, uv and poetry with Aikido Safe Chain. Free to use, no tokens required.

JavaScript 1,131 59 Updated Apr 16, 2026

Free educational content on reverse engineering and malware analysis from the FLARE team

JavaScript 973 68 Updated Mar 31, 2026
Next