Skip to content
View l4rm4nd's full-sized avatar

Organizations

@Haxxnet

Block or report l4rm4nd

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
38 stars written in C
Clear filter

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

C 16,714 1,064 Updated Sep 21, 2026

Small and highly portable detection tests based on MITRE's ATT&CK.

C 12,570 3,217 Updated Sep 14, 2026

SSH tarpit that slowly sends an endless banner

C 8,561 302 Updated Jun 3, 2024

Dopamine is a semi-untethered jailbreak for iOS 15 to 26(.0.1)

C 6,704 6,286 Updated Aug 30, 2026

Jailbreak for A8 through A11, T2 devices, on iOS/iPadOS/tvOS 15.0, bridgeOS 5.0 and higher.

C 6,525 793 Updated Sep 21, 2026

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters

C 4,706 756 Updated Jul 8, 2025

Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 9…

C 2,457 330 Updated Apr 17, 2024

PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.

C 2,275 303 Updated Aug 15, 2024

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

C 1,904 244 Updated Nov 3, 2024

Lightning-fast file system indexer and search tool

C 1,307 80 Updated Sep 20, 2026

Simple DNS Rebinding Service

C 759 89 Updated Jan 16, 2020

Proof-of-Concept tool for extracting credential material from protected sessions on modern Windows systems.

C 747 69 Updated May 9, 2026

Tang binding daemon

C 733 64 Updated Mar 6, 2025

Collection of UAC Bypass Techniques Weaponized as BOFs

C 663 86 Updated Feb 21, 2024

Crowdstrike Falcon 0day Privilege Escalation Vulnerability

C 626 166 Updated Sep 3, 2026

MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.

C 540 65 Updated Nov 14, 2025

LPE exploit for CVE-2023-21768

C 505 163 Updated Jul 10, 2023

Utility to decrypt App Store apps on jailbroken iOS 11.x

C 492 76 Updated May 24, 2020

Local privilege escalation via PetitPotam (Abusing impersonate privileges).

C 465 55 Updated Mar 30, 2023

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

C 461 111 Updated Jan 5, 2023

Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework

C 388 44 Updated Jul 30, 2024

A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, without touching LSASS process memory.

C 296 38 Updated Feb 21, 2026

Slides & Code snippets for a workshop held @ x33fcon 2024

C 286 49 Updated Jun 15, 2024

Silentbridge is a toolkit for bypassing 802.1x-2010 and 802.1x-2004.

C 279 47 Updated Jun 13, 2023

Two tools written in C that block network traffic for blacklisted EDR processes, using either Windows Defender Firewall (WDF) or Windows Filtering Platform (WFP).

C 267 35 Updated Sep 23, 2025

PoC demonstrating a multi process injection chain aimed at remotely executing shellcode

C 257 35 Updated Jan 21, 2024

Fritter is a heavily modified fork of TheWover and Odzhan's Donut shellcode generator.

C 253 40 Updated Aug 4, 2026

Steal privileged token to obtain SYSTEM shell

C 251 54 Updated Jul 14, 2020

Lab research on Windows loader internals, PE loading, stack artifacts, and execution tradeoffs.

C 242 45 Updated May 4, 2026
Next