AleDiBen / RevShellLinks
C-based Reverse Shell that uses CMD or PowerShell
☆16Updated 5 years ago
Alternatives and similar repositories for RevShell
Users that are interested in RevShell are comparing it to the libraries listed below
Sorting:
- A PoC to demo modifying cmdline of the child process dynamically. It might be useful against process log tracing, AV or EDR.☆40Updated 4 years ago
- Collection of shellcode injection and execution techniques☆18Updated 2 months ago
- Reverse shell without Windows cmd.exe, using ReactOS cmd.dll as shellcode☆23Updated 5 years ago
- Injects shellcode into remote processes using direct syscalls☆77Updated 4 years ago
- Executes shellcode from a remote server and aims to evade in-memory scanners☆31Updated 5 years ago
- JALSI - Just Another Lame Shellcode Injector☆30Updated 4 years ago
- ☆23Updated 4 years ago
- C code to enable ETW tracing for Dotnet Assemblies☆31Updated 3 years ago
- A crappy hook on SpAcceptLsaModeContext that prints incoming auth attempts. WIP☆36Updated 4 years ago
- ☆22Updated 4 years ago
- Upsilon execute shellcode with syscalls - no API like NtProtectVirtualMemory is used☆91Updated 4 years ago
- improving zerosums smbdoor - a silent remote backdoor which abuses undoc. APIs in srvnet.sys☆50Updated 2 years ago
- ☆50Updated 5 years ago
- 64bit Windows 10 shellcode that adds user BOKU:SP3C1ALM0V3 to the system and the localgroups Administrators & "Remote Desktop Users"☆40Updated 4 years ago
- all credits go to @mgeeky☆64Updated 4 years ago
- ☆64Updated 2 years ago
- ☆18Updated 4 years ago
- ☆82Updated 3 years ago
- A simple PE loader.☆27Updated 2 years ago
- Files for http://deniable.org/windows/windows-callbacks☆26Updated 5 years ago
- Nice try reading NTDLL from disk, nerd.☆19Updated 3 years ago
- Disable PPL via custom driver and dump lsass☆15Updated 4 years ago
- Use TpAllocWork, TpPostWork and TpReleaseWork to execute machine code☆23Updated 2 years ago
- ☆26Updated 3 years ago
- ☆56Updated 2 years ago
- ☆14Updated 3 years ago
- Offensive RPC PoC☆88Updated 4 years ago
- Use smb2 protocol to detect remote computer os version, support win7/server2008-win10/server2019☆59Updated 4 years ago
- I used this to see if an EDR is running in Safe Mode☆36Updated 4 years ago
- x64 Registration-Free In-Process COM Automation Server.☆50Updated 2 years ago