0pepsi / Linux-persistenceLinks
A no-reboot, in-memory Linux persistence PoC leveraging namespace joining, user-namespace elevation, and self‑deletion.
☆46Updated this week
Alternatives and similar repositories for Linux-persistence
Users that are interested in Linux-persistence are comparing it to the libraries listed below
Sorting:
- Convert your shellcode into an ASCII string☆104Updated last month
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆85Updated 5 months ago
- PoC that downloads an executable from a public SSL certificate☆119Updated 2 weeks ago
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆140Updated last year
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆147Updated last year
- Smart keylogging capability to steal SSH Credentials including password & Private Key☆139Updated 4 months ago
- Linux post exploitation tool for info gathering and exfiltration 🐧📡💀☆85Updated 2 weeks ago
- ☆57Updated 8 months ago
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆250Updated last week
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆195Updated 5 months ago
- PowerShell script to generate ShellCode in various formats☆42Updated 10 months ago
- ☆163Updated 3 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆94Updated 10 months ago
- The tool that bypasses the firewall's Application Based Rules and lets you connect to anywhere, ANY IP, ANY PORT and ANY APPLICATION.☆62Updated 11 months ago
- A proof-of-concept C2 channel through DuckDuckGo's image proxy service☆75Updated last year
- Repo for all my exploits/PoCs☆51Updated 3 months ago
- Our Tips&Tricks☆124Updated 5 months ago
- Shellcode encryptor using a substitution cipher with a randomly generated key.☆135Updated 6 months ago
- Analyse MSI files for vulnerabilities☆137Updated 11 months ago
- Automated .NET AppDomain hijack payload generation☆127Updated 6 months ago
- PfSense Stored XSS lead to Arbitrary Code Execution exploit☆47Updated 7 months ago
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆118Updated 3 months ago
- Documents Exfiltration project for fun and educational purposes☆145Updated last year
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆72Updated last year
- A user-mode code and its rootkit that will Kill EDR Processes permanently by leveraging the power of Process Creation Blocking Kernel Cal…☆204Updated 2 months ago
- POC of GITHUB simple C2 in rust☆53Updated 2 weeks ago
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆105Updated last month
- A delicious, but malicious SSL-VPN server 🌮☆243Updated last week
- CVE-2025-33053 Proof Of Concept (PoC)☆58Updated last month
- Proof of Concept for CVE-2025-32756 - A critical stack-based buffer overflow vulnerability affecting multiple Fortinet products.☆84Updated last month