Malware lab
Drop a sample
Send me your weird binaries, loaders, lures, or macOS agents. Uploads land in an isolated bucket where I can safely reverse engineer them and publish the write-up.
Queue
What I'm dissecting
Synced straight out of the bucket manifest.
No community samples yet. Be the first to drop one.
Write-ups
Once a sample is understood
All writing →Tooling, write-ups, hunting rules and detections.
ARTICLE ARTICLE
I Exploited React2Shell and Got Shell Access
In this hands-on post, I show how I exploited the React2Shell (CVE-2025-55182) vulnerability to download a C2 agent and gain shell access on a controlled Ubuntu VM
I Hacked AI To Build Me a C2 Server and get Shell Access
What if you could weaponize AI… for good$4 In this hands-on post, I show how I hacked AI to build a fully functional C2 server, craft a custom agent, and gain shell access on a controlled Windows VM