Lists (1)
Sort Name ascending (A-Z)
Stars
A Raspberry Pi-based Ethernet implant that bypasses 802.1X and allows the same IP address to be used in parallel. presented on x33fcon 2026
A Proof of Concept demonstrating CET-compliant callstack spoofing in Rust. It leverages Windows Thread Pool and Enum Callback trampolining (e.g., EnumSystemLocalesEx) to forge a pristine, hardware-…
BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.
P³-Shellcode Loader is a loader that implements a code injection technique which leverages the Process Parameters structure as an execution and staging location for shellcode injection into remote …
A stealthy and modular Windows loader designed to bypass modern EDR solutions using Module Stomping, Stack Duplication, and Advanced Sleep Obfuscation.
Dump TGTs remotely and convert Windows' klist binary output to ccache.
Havoc C2 BOF port of the KslD.sys BYOVD technique. Credential extraction from lsass via physical memory — no OpenProcess, no auditable API calls.
Entra ID user enumeration and auth method discovery via the public GetCredentialType API
A shellcode loader generator with support for multiple injection techniques, built for red team engagements.
Offensive knowledge, offline. One search box for every playbook.
e-fin / OpenPsPipeJack
Forked from PowerShell/PowerShellOpen Source implementation of PsPipeJack
RoguePlanet Windows Defender Vulnerability
Aegis — Unofficial Home Assistant integration for Ajax Security Systems and co-branded apps
Local SYSTEM auth trigger for relaying - X
A credential extraction BOF for Veeam Backup and Replication and Veeam One
Combining KslDump and GhostKatz to dump LSASS using no-fix KslD.sys memory read to bypass PPL. Extracts MSV1_0 NT hashes and WDigest cleartext passwords (if enabled) from LSASS using a Microsoft-si…
Another BYOVD process killer. works on all EDR's. fully signed.
Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.
Full exploit code for CVE-2026-40369 - A Windows kernel arbitrary write vulnerability that allows browser sandbox escape from all browsers render process sandbox
This repo contains the results of an internal re-write of impacket I undertook at my current company. It contains some of the IoCs found within the library
Home Assistant integration for Canal de Isabel II — hourly water consumption + meter reading via bookmarklet ingest.
x64 PE bin2bin obfuscator which doesn't add a section to the binary
Beacon Object File to Enable Chrome DevTools Protocol (CDP)
Async BOF to automatically extract or renew Kerberos TGTs on a target system.