Skip to content
View p1d3er's full-sized avatar

Block or report p1d3er

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Converts PE into a shellcode

C++ 2,776 470 Updated Aug 30, 2025

Extract Windows credentials directly from VM memory snapshots and virtual disks

Rust 1,346 146 Updated Jun 7, 2026

Runnable ClaudeCode source code

TypeScript 3,209 3,823 Updated Apr 8, 2026

Model Context Protocol for WinDbg.

Python 1,351 127 Updated Jun 8, 2026

Bof of RegPwn by MDSec

C 125 10 Updated Mar 15, 2026

Claude Code 免杀 SubAgents

Python 290 49 Updated Apr 9, 2026

Rusty Armory - Beacon Object Files (BOFs) in Rust (Codename: Armory)

Rust 66 11 Updated Apr 3, 2026

Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bookmarks from modern Chromium-based and Gecko-based browsers …

C 739 111 Updated May 31, 2026

A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress also bypass the "modified UPX" in DIE

Go 30 3 Updated Jan 2, 2025

NewCobaltstrikeTeamServer 是一个尝试用 Go 语言重写的 Cobalt Strike 服务端项目,目前正在开发中,一个学习的产物

Go 91 9 Updated Aug 12, 2025

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and maintain persistence. Browser extension, electron app, …

JavaScript 455 49 Updated Jun 11, 2026

Nacos 综合漏洞利用工具

638 33 Updated Nov 3, 2025

让fscan再次伟大

Go 344 38 Updated Jun 10, 2026

Because AV evasion should be easy.

Go 878 82 Updated Nov 28, 2024

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileg…

Shell 2,463 262 Updated Mar 11, 2026

Netcat with automated NAT traversal, secure P2P, and advanced features for shell access, file transfer, and network proxying.

Go 664 55 Updated Jun 7, 2026

Windows Token Stealing Expert

C# 492 68 Updated Nov 24, 2023

BOF to steal browser cookies & credentials

C 533 53 Updated Mar 4, 2026

Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.

C++ 636 70 Updated Feb 2, 2026

Defeating Windows User Account Control

C 7,636 1,423 Updated May 22, 2026

A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.

C 626 71 Updated Jan 2, 2025

The Network Execution Tool

Python 5,600 716 Updated Jun 12, 2026

Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advanced techniques to dump memory, allowing to access sensitive da…

C++ 577 89 Updated May 22, 2025

一款基于JAVA编写的插件化漏洞利用工具

Java 46 8 Updated Jul 30, 2025

Seamless remote browser session control

TypeScript 232 20 Updated Jan 28, 2026

BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055, CVE-2026-3609, CVE-2026-8501).

Rust 792 117 Updated Jun 2, 2026

Useful C2 techniques and cheat sheets learned from engagements

596 97 Updated Jun 11, 2026

SharpCoercer is a .NET 4.8 C# tool that leverages 16 different RPC-based coercion methods to force remote Windows hosts to authenticate to your listener over SMB or HTTP.

C# 58 7 Updated Jul 13, 2025

云安全利用工具-云平台AK/SK-WEB利用工具,添加AK/SK自动检测资源,无需手动执行,支持云服务器、存储桶、数据库操作

Java 596 65 Updated Dec 19, 2024

通过ThinkPHP框架学习PHP代码审计

PHP 295 41 Updated Jun 19, 2024
Next