0x1uke / lurker
Lurker is a cross-platform, companion implant to Cobalt Strike built with Go
☆26Updated 4 months ago
Alternatives and similar repositories for lurker:
Users that are interested in lurker are comparing it to the libraries listed below
- Bunch of BOF files☆27Updated last month
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆38Updated last year
- BOF for C2 framework☆39Updated 2 months ago
- GPOAnalyzer is a tool designed to assist in parsing domain Group Policy Object (GPO) files located in the SYSVOL directory.☆23Updated 7 months ago
- ☆58Updated last year
- FrostLock Injection is a freeze/thaw-based code injection technique that uses Windows Job Objects to temporarily freeze (suspend) a targe…☆13Updated 2 weeks ago
- ☆24Updated last year
- Determine if the WebClient Service (WebDAV) is running on a remote system☆17Updated 10 months ago
- ☆47Updated last year
- Lockless BOF☆62Updated 11 months ago
- Click Once + App Domain☆63Updated last year
- A third-party Gopher Assassin for the Havoc Framework.☆45Updated last year
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆68Updated 8 months ago
- Just another ntdll unhooking using Parun's Fart technique☆73Updated last year
- Unchain AMSI by patching the provider’s unmonitored memory space☆88Updated 2 years ago
- Windows Thread Pool Injection Havoc Implementation☆28Updated 10 months ago
- ☆28Updated 5 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated 6 months ago
- Rewrite to fit my needs☆27Updated 6 months ago
- Lateral Movement via the .NET Profiler☆77Updated 2 months ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆56Updated last year
- A care package of useful bofs for red team engagments☆54Updated last month
- ☆92Updated 4 months ago
- macOS dylib stager☆26Updated last week
- Encode shellcode into dictionary words for evasion and entropy reduction☆23Updated 2 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆44Updated last year
- A pure C version of SymProcAddress☆25Updated 10 months ago
- Section-based payload obfuscation technique for x64☆59Updated 5 months ago
- Utilities for obfuscating shellcode☆51Updated 7 months ago