A Simple PoC
☆22May 24, 2024Updated 2 years ago
Alternatives and similar repositories for ThreadlessSpawn
Users that are interested in ThreadlessSpawn are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Windows PE - TLS (Thread Local Storage) Injector in C/C++☆106Jan 3, 2021Updated 5 years ago
- A tracker DLL which enables 'NTAPI->Syscall' tracking whenever it is loaded. It calls 'NtSetInformationProcess' API call with a callback …☆14Oct 21, 2024Updated last year
- A runtime for developing large-scale and complex PIC module.☆21Updated this week
- ☆29May 10, 2024Updated 2 years ago
- Zero EAT touch way to retrieve function addresses (GetProcAddress on steroids)☆147Mar 16, 2024Updated 2 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆80Dec 23, 2023Updated 2 years ago
- Rust 重构的 sRDI☆17Sep 9, 2024Updated 2 years ago
- UAC Bypass via CMUACUtil & PEB Enumeration, Undetected for now.☆52May 8, 2024Updated 2 years ago
- Yet another C++ Cobalt Strike beacon dropper with Compile-Time API hashing and custom indirect syscalls execution☆203May 29, 2025Updated last year
- 看雪 LLVM与代码混淆技术 笔记☆22Aug 31, 2023Updated 3 years ago
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆208May 28, 2024Updated 2 years ago
- 一个普通的BOF用来BypassUAC☆21Apr 6, 2024Updated 2 years ago
- A simple BOF (Beacon Object File) to search files in the system☆19Dec 2, 2023Updated 2 years ago
- This project is created for research into antivirus evasion by unhooking.☆18Sep 2, 2021Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A basic exemple of the API-Hashing method used by Red Teamers but also by malwares developers in C++☆37Jan 10, 2024Updated 2 years ago
- A command and control framework.☆54Dec 26, 2024Updated last year
- Havoc BOF implementation of BYOVD attack to terminate PPL-protected EDR processes using a signed Microsoft kernel driver.☆39Apr 6, 2026Updated 5 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆54May 12, 2025Updated last year
- CobaltStrike beacon in rust☆209Aug 10, 2024Updated 2 years ago
- Evasive shellcode loader for Red Teaming☆18Aug 15, 2025Updated last year
- beta☆119Sep 24, 2024Updated last year
- BOF implementation of @_EthicalChaos_'s ThreadlessInject project. A novel process injection technique with no thread creation, released a…☆398Jan 9, 2024Updated 2 years ago
- Abusing Some Defects in KSLD Ark driver☆41May 30, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆15Feb 9, 2022Updated 4 years ago
- Evasive shellcode loader☆400Oct 17, 2024Updated last year
- A tool that bypasses Windows Defender by manually loading DLLs, parsing EAT directly, and updating IAT with unhooked functions to run M…☆21Jul 14, 2024Updated 2 years ago
- Exploitation of process killer drivers☆205Oct 17, 2023Updated 2 years ago
- 重构Beacon☆164Aug 19, 2024Updated 2 years ago
- Sliver agent rewritten in C++☆49Sep 4, 2024Updated 2 years ago
- Shadow Rebirth - An Aggressive Outbreak Anti-Debugging Technique☆21Dec 3, 2024Updated last year
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆55Mar 30, 2026Updated 5 months ago
- Generator of https://github.com/TheWover/donut in pure Go. supports compression, AMSI/WLDP/ETW bypass, etc.☆71Jul 29, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Shellcode Reductio Entropy Tools☆74Oct 8, 2023Updated 2 years ago
- Former UEFI Firmware Rootkit Replicating MoonBounce / ESPECTRE☆13Jun 14, 2022Updated 4 years ago
- An example reference design for a proposed BOF PE☆246Jan 23, 2026Updated 7 months ago
- Beacon Object File (BOF) for Windows Session Hijacking via IHxHelpPaneServer COM☆71Dec 25, 2025Updated 8 months ago
- DNS Tunneling as net.Conn☆16Dec 22, 2024Updated last year
- A BOF that runs unmanaged PEs inline☆702Oct 23, 2024Updated last year
- Basic Linux binary shim method on the passwd binary from the shadow package to steal credentials as they are changed.☆14Nov 14, 2024Updated last year