Skip to content
View d5fa4lt's full-sized avatar
🧩
Working
🧩
Working

Block or report d5fa4lt

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Early Bird Cryo Injections – APC-based DLL & Shellcode Injection via Pre-Frozen Job Objects

C++ 130 15 Updated Apr 6, 2025

A modular toolkit for building fast, reliable Web applications and libraries with Rust and WASM

Rust 1,941 159 Updated Dec 1, 2025

Build fast web applications with Rust.

Rust 19,603 820 Updated Dec 17, 2025

Payload Development Framework

Python 824 117 Updated Dec 9, 2025

Certified Red Team Operator (CRTO) Cheatsheet and Checklist

187 34 Updated Mar 16, 2024

A Windows Kernel Driver Emulator base on Unicorn, Kernel Memory Dump and some of native environment

C++ 152 24 Updated Dec 1, 2025

A Crystal Palace shared library to resolve & perform syscalls

C 50 6 Updated Oct 29, 2025

A BOF that's a BOF Loader

C++ 146 19 Updated Nov 23, 2025

Easy peasy file uploads

HTML 32 5 Updated Aug 29, 2025

Evasion kit for Cobalt Strike

C 343 44 Updated Dec 18, 2025

LudusHound is a tool for red and blue teams that transforms BloodHound data into a fully functional, Active Directory replica environment via Ludus for controlled testing.

PowerShell 343 23 Updated Sep 3, 2025

Template-Driven AV/EDR Evasion Framework

Assembly 1,754 277 Updated Nov 3, 2023

Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domain joined machies

C# 268 30 Updated Dec 27, 2024

Command and Control Framework written in C#

C# 428 61 Updated Jul 27, 2023

Crystal Palace library for proxying Nt API calls via the Threadpool

C 97 12 Updated Oct 18, 2025

This map lists the essential techniques to bypass anti-virus and EDR

2,967 331 Updated Mar 28, 2025

A new AiTM attack framework — based on leveraging service workers — designed to conduct credential phishing campaigns. Thanks to its minimalist, robust, and highly adaptable architecture, this solu…

JavaScript 134 23 Updated Aug 5, 2025

A collection of awesome Command & Control (C2) frameworks, tools and resources for post-exploitation and red teaming assignments.

933 101 Updated Feb 26, 2021

POC of GITHUB simple C2 in rust

Rust 52 13 Updated Jul 27, 2025

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters

C 4,355 724 Updated Jul 8, 2025

Exposing CharmingKitten's malicious activity for IRGC-IO Counterintelligence division (1500)

C# 423 98 Updated Oct 27, 2025

The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.

Rust 354 29 Updated Dec 18, 2025

RunPE implementation with multiple evasive techniques

C 254 34 Updated Sep 25, 2025

Alternative Read and Write primitives using Rtl* functions the unintended way.

C 78 10 Updated Aug 25, 2025

Proof of Concepts code for Bring Your Own Vulnerable Driver techniques

C 199 28 Updated Aug 21, 2025

Two tools written in C that block network traffic for blacklisted EDR processes, using either Windows Defender Firewall (WDF) or Windows Filtering Platform (WFP).

C 254 34 Updated Sep 23, 2025

Enumerate active EDR's on the system

C 147 26 Updated Sep 23, 2025
Next