Skip to content
View med0x2e's full-sized avatar

Block or report med0x2e

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 71,422 16,178 Updated Nov 2, 2025

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

C++ 50,965 2,254 Updated Nov 1, 2025

MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

Python 11,834 1,144 Updated Nov 5, 2025

Adversary Emulation Framework

Go 10,185 1,392 Updated Nov 3, 2025

holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function.

Python 9,661 1,131 Updated Sep 10, 2024

The Havoc Framework

Go 7,931 1,127 Updated Jul 10, 2025

Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com

PowerShell 7,396 1,336 Updated Oct 16, 2025

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Python 4,963 763 Updated Jul 24, 2025

The world’s 1st book of very detailed iOS App reverse engineering skills :)

4,336 453 Updated Oct 30, 2015

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters

C 4,286 716 Updated Jul 8, 2025

Advanced usermode anti-anti-debugger. Forked from https://bitbucket.org/NtQuery/scyllahide

C++ 3,884 472 Updated Jun 4, 2024

Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process.

C 3,135 812 Updated Sep 3, 2022

A tool to perform Kerberos pre-auth bruteforcing

Go 3,102 460 Updated Aug 20, 2024

Converts PE into a shellcode

C++ 2,680 463 Updated Aug 30, 2025

Identifies the bytes that Microsoft Defender flags on.

C# 2,537 461 Updated Sep 14, 2023

Windows Events Attack Samples

HTML 2,440 421 Updated Jan 24, 2023

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

PowerShell 2,436 487 Updated Nov 15, 2023

BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world.…

PowerShell 2,197 289 Updated Jun 7, 2023

A post exploitation framework designed to operate covertly on heavily monitored environments

C 2,160 336 Updated Sep 29, 2021

PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.

C 2,110 295 Updated Aug 15, 2024

Tools, tips, tricks, and more for exploring ICS Security.

HTML 1,869 475 Updated Apr 15, 2025

Shikata ga nai (仕方がない) encoder ported into go with several improvements

Go 1,857 239 Updated Feb 22, 2024

Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019

C# 1,776 231 Updated Sep 4, 2024

Situational Awareness commands implemented using Beacon Object Files

C 1,612 263 Updated Oct 22, 2025

A tool for quickly evaluating IAM permissions in AWS.

Python 1,525 185 Updated Aug 2, 2024

Converts a EXE into DLL

C++ 1,343 205 Updated Sep 15, 2025

CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost

C 1,341 342 Updated Dec 7, 2020

Proof of Concepts

Python 1,314 321 Updated Nov 12, 2024

The Hunt for Malicious Strings

C# 1,310 177 Updated May 13, 2025

Defences against Cobalt Strike

1,291 192 Updated Jul 14, 2022
Next