Stars
A POC for the new injection technique, abusing windows fork API to evade EDRs. https://www.blackhat.com/eu-22/briefings/schedule/index.html#dirty-vanity-a-new-approach-to-code-injection--edr-bypass…
The smart contract security training ground for developers, security researchers and educators.
Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.
Cloud Security Posture Management (CSPM)
Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode
A small Windows DLL initialization demo in Rust
x64dbg / mona
Forked from corelan/monaFork of mona.py with x64dbg support
Public repository for windbglib, a wrapper around pykd.pyd (for Windbg), used by mona.py
This tool lets you search your gadgets on your binaries to facilitate your ROP exploitation. ROPgadget supports ELF, PE and Mach-O format on x86, x64, ARM, ARM64, PowerPC, SPARC, MIPS, RISC-V 64, a…
A repository for learning various heap exploitation techniques.
A Coverage Explorer for Reverse Engineers
agnivesh / endgame
Forked from DavidDikker/endgameAn AWS Pentesting tool that lets you use one-liner commands to backdoor an AWS account's resources with a rogue AWS account - or share the resources with the entire internet 😈
Library for building powerful interactive command line applications in Python
Logstash configuration for pfSense syslog events.
Updog is a replacement for Python's SimpleHTTPServer. It allows uploading and downloading via HTTP/S, can set ad hoc SSL certificates and use http basic auth.
PeaceMaker Threat Detection is a Windows kernel-based application that detects advanced techniques used by malware.
A script that automates generation of OpenSSL reverse shells
WinGet is the Windows Package Manager. This project includes a CLI (Command Line Interface), PowerShell modules, and a COM (Component Object Model) API (Application Programming Interface).