Skip to content
View kmkz's full-sized avatar
🇱🇺
Bourbon Offensive Security Services | BOSS
🇱🇺
Bourbon Offensive Security Services | BOSS

Block or report kmkz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

LotL RMM

MDX 324 70 Updated Mar 24, 2026

Living Off The Land Drivers

YARA 1,444 182 Updated Mar 25, 2026

Random source codes

Perl 26 17 Updated Dec 22, 2025

JavaScript payload and supporting software to be used as XSS payload or post exploitation implant to monitor users as they use the targeted application. Also includes a C2 for executing custom Java…

JavaScript 433 45 Updated Mar 28, 2026
Go 1 Updated Oct 21, 2025

Proof-of-Concept files for vulnerabilities found by Codean Labs

PostScript 19 2 Updated Jun 10, 2025

Chrome V8 n-day exploits that I've written.

JavaScript 206 32 Updated Apr 8, 2023

Sample PowerShell module and scripts for managing Azure AD Identity Protection service

PowerShell 86 21 Updated Aug 12, 2022

Opensource assets and vulnerability scanning tool

JavaScript 186 44 Updated Jan 20, 2026

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

JavaScript 287 51 Updated Mar 23, 2026

CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)

C 45 11 Updated Oct 16, 2024

A crappy LSASS dumper with no ASCII art

C 1 Updated Oct 22, 2022
C# 12 5 Updated Sep 13, 2023
C# 343 38 Updated Nov 10, 2025

Exploitation of echo_driver.sys

C# 170 24 Updated Sep 16, 2023

iOS Crash Dump Analysis Book

Objective-C 623 93 Updated Mar 19, 2023

Slide decks from my conference presentations

367 57 Updated Sep 30, 2023

Publishing advisories for CVEs found by POST Cyberforce

13 1 Updated Jan 7, 2025

Bypassing AppLocker with C#

144 27 Updated Jul 7, 2021

No Sandbox - Applications That Run Chromium and Chrome Without The Sandbox. TL;DR exploits in these browser based applications are already sandboxed escaped: https://no-sandbox.io/

189 12 Updated Apr 20, 2021

An effort to track security vendors' use of Microsoft's Antimalware Scan Interface

253 19 Updated Oct 15, 2025

Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process.

C 3,257 820 Updated Sep 3, 2022

Exploits for Android Binder bug CVE-2020-0041

C 256 73 Updated Apr 8, 2020

Writing custom backdoor payloads with C# - Defcon 27 Workshop

C# 1,192 278 Updated Mar 18, 2022

A sort of simple shell which support multiple protocols.

C# 99 22 Updated Sep 4, 2019

Adversary Tactics - PowerShell Training

PowerShell 1,609 343 Updated Jan 22, 2020
Next