Skip to content
View clod81's full-sized avatar
🔐
🔐

Block or report clod81

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Authenticode signature manipulation toolkit for Red Team operations and security research. Covers signature stealing, metadata cloning, SIP hijacking across 19 file types, WinVerifyTrust FinalPolic…

Python 67 11 Updated Aug 9, 2026

A font-based deception tool for red teaming, security research, and whatever else.

Python 248 20 Updated Aug 9, 2026
C 2 Updated Jul 6, 2026

A collection of libraries and a TUI to test fiber GPON deployments.

Rust 90 6 Updated Aug 8, 2026

Silent;Call — Pre-authentication remote root on Cisco CUCM 15.x (CVSS 10.0)

Shell 28 2 Updated Aug 4, 2026
Python 67 12 Updated Aug 5, 2026

HTTP Desync research factory.

Java 58 3 Updated Aug 5, 2026

POC tool for ResetNightmare (CVE-2026-27912)

PowerShell 145 25 Updated Aug 2, 2026
Python 89 10 Updated Aug 8, 2024

Pass-the-Passkey Family of Attacks

C# 170 16 Updated Jul 22, 2026

BOF exploiting the Visual Studio Installer Elevation Service for SYSTEM LPE and persistence via AppDomainManager hijacking, with native ETW evasion. For Cobalt Strike & Adaptix.

C++ 60 6 Updated Aug 5, 2026

An LLM extension for Ghidra to enable AI assistance in RE.

Java 697 62 Updated May 29, 2026

SOCKS-focused NTLM relay with persistent session packages and a long-lived SessionBank that owns authenticated TCP connections.

Python 36 2 Updated Aug 3, 2026

PoC VS Code extension that silently exfiltrates GitHub OAuth tokens by spoofing a product-trusted extension identity.

JavaScript 1 Updated Aug 3, 2026

Windows Kernel-Mode Shellcode Development Framework (WKMSDF)

C++ 73 12 Updated Aug 1, 2026

NetExec MCP

Python 62 6 Updated Aug 2, 2026

Request a service ticket from a foreign DC using an inter-realm TGT, for cross-realm cases Impacket's getST.py mishandles

Python 9 Updated Aug 4, 2026

A CET-compatible Windows x64 loader that produces fully backed call stacks through runtime function table manipulation, code cave injection, and inverted function table collapse.

C++ 100 13 Updated Jul 28, 2026

20 MB lightweight cross-platform database client for 70+ databases, including MySQL, PostgreSQL, SQLite, Redis, MongoDB, DuckDB, SQL Server, and Dameng. Built-in AI, MCP Server, CLI, desktop and Do…

Rust 13,970 1,433 Updated Aug 11, 2026

wp2shell (CVE-2026-63030 & CVE-2026-60137) - full RCE chain

Python 736 168 Updated Jul 23, 2026

Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys.

Go 59 5 Updated Jul 21, 2026

BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.

C 112 11 Updated Jul 14, 2026

A Proof of Concept demonstrating CET-compliant callstack spoofing in Rust. It leverages Windows Thread Pool and Enum Callback trampolining (e.g., EnumSystemLocalesEx) to forge a pristine, hardware-…

Rust 52 7 Updated Jul 12, 2026
C++ 7 1 Updated Jul 8, 2026

Local Privilege Escalation from Admin to Kernel vulnerability on Windows 10 and Windows 11 operating systems with HVCI enabled.

C 336 70 Updated Apr 16, 2024

Living Off the Land Credentials. Public credential defaults, locations, and exposure patterns for real products, SaaS/cloud services, appliances, and deployment packages.

49 5 Updated Jul 19, 2026

BOF to manage Active Directory Integrated DNS (ADIDNS)

C++ 28 3 Updated Jul 28, 2025
Python 44 3 Updated Jul 1, 2026
Next