ANYLNK / STProcessMonitorBYOVDView external linksLinks
The PoC of CVE-2025-70795 / CVE-2026-0828 and its update
☆30Updated this week
Alternatives and similar repositories for STProcessMonitorBYOVD
Users that are interested in STProcessMonitorBYOVD are comparing it to the libraries listed below
Sorting:
- Windows Access token manipulation tool made in C#☆24Aug 24, 2025Updated 5 months ago
- Authenticated 0-click RCE against Linux 6.1.45 for CVE-2023-52440 and CVE-2023-4130☆52Sep 13, 2025Updated 5 months ago
- Modern PIC implant for Windows (64 & 32 bit)☆105Jul 23, 2025Updated 6 months ago
- Source code for the DEF CON 33 CTF Finals.☆25Aug 26, 2025Updated 5 months ago
- Integer overflow in FreeType software, which also affects Chrome☆23Aug 27, 2025Updated 5 months ago
- Generate DLL proxy/sideload projects. Automatically parses PE export tables and generates ready-to-compile project for red team engagemen…☆62Updated this week
- ☆106Updated this week
- Shellcode Loader using indirect syscalls☆16Jan 21, 2024Updated 2 years ago
- Local Privilege Escalation Affecting Millions of Gaming Laptops☆59Jan 19, 2026Updated 3 weeks ago
- AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.☆44Updated this week
- Power Automate C2 (PAC2) : Stealth living-off-the-cloud C2 framework.☆36Apr 16, 2024Updated last year
- One-header configurable C++20 COFF loader☆21Jul 21, 2025Updated 6 months ago
- ☆28Updated this week
- Cobalt Strike module x loader x profile x wike / A public collection of open resources for Cobalt Strike (only legal use in Red Team and …☆107Dec 7, 2025Updated 2 months ago
- Repository for the DEF CON 33 talk: Kill Chain Reloaded☆79Aug 3, 2025Updated 6 months ago
- Deserialization payload generator for a variety of .NET formatters☆176Dec 2, 2025Updated 2 months ago
- Bake shellcode to get malicious.exe☆27Jul 25, 2023Updated 2 years ago
- The Azure Execution Tool☆121Feb 6, 2026Updated last week
- A PoC to deploy a Sliver Agent with amsi bypass, process injection, hollowing and OpSec☆27Oct 2, 2024Updated last year
- ☆21Apr 6, 2025Updated 10 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆61May 12, 2025Updated 9 months ago
- This repo contains useful scripts that AI created for me which I would have been too lazy for☆82Updated this week
- proper ntdll .text section unhooking via native api. unlike other unhookers this doesnt leave 2 ntdlls loaded. x86/x64/wow64 supported.☆52Dec 9, 2025Updated 2 months ago
- Guide on using the PPPwnGo GUI tool☆11Sep 26, 2024Updated last year
- Collection of BOFs created for red team/adversary engagements. Created to be small and interchangeable, for quick recon or eventing.☆234Feb 9, 2026Updated last week
- Exploitation of CVE-2026-24061☆190Jan 22, 2026Updated 3 weeks ago
- User-mode implementation of HTTP.SYS. Implements HTTP 1.1 of the "HTTP Server API 2.0" for web servers☆44Feb 17, 2025Updated 11 months ago
- Simple C++ PoC of SeDebugPrivilege Privesc☆29Feb 12, 2024Updated 2 years ago
- Run native PE or .NET executables entirely in-memory. Build the loader as an .exe or .dll—DllMain is Cobalt Strike UDRL-compatible☆266Jun 18, 2025Updated 7 months ago
- Using Chromium-based browsers as a proxy for C2 traffic.☆141Dec 6, 2025Updated 2 months ago
- Automated script for obfuscating, rebranding and renaming the Havoc C2 Framework to evade AV/EDR and C2 hunters.☆46Aug 13, 2025Updated 6 months ago
- A Crystal Palace shared library to resolve & perform syscalls☆56Oct 29, 2025Updated 3 months ago
- ☆38Apr 15, 2025Updated 10 months ago
- Static Encrypt is an crate that encrypts string literals at compile time and only decrypted at runtime when needed.☆56Jan 17, 2026Updated 3 weeks ago
- Threadless shellcode injection tool☆68Aug 5, 2024Updated last year
- An offensive toolkit for restless guests #DEFCON33☆54Aug 11, 2025Updated 6 months ago
- A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (D…☆91Jan 21, 2026Updated 3 weeks ago
- Resolve WinAPI func. Custom GetProcAddress and GetModuleHandle written in Nim☆32Jun 2, 2021Updated 4 years ago
- Universal root exploit for the linux kernel☆38Apr 30, 2024Updated last year