Binject / exec2shellLinks
Extracts TEXT section of a PE, ELF, or Mach-O executable to shellcode
☆105Updated 2 years ago
Alternatives and similar repositories for exec2shell
Users that are interested in exec2shell are comparing it to the libraries listed below
Sorting:
- Generator of https://github.com/TheWover/donut in pure Go. supports compression, AMSI/WLDP/ETW bypass, etc.☆62Updated 2 years ago
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callback☆68Updated 3 years ago
- 🔎🪲 Malleable C2 profiles parser and assembler written in golang☆67Updated last year
- Go implementation of the self-deletion of an running executable from disk☆112Updated 2 years ago
- Golang evasion tool, execute-assembly .Net file☆97Updated 3 years ago
- Golang implementation of Reflective load PE from memory☆62Updated 3 years ago
- Exploits undocumented elevated COM interface ICMLuaUtil via process spoofing to edit registry then calls ColorDataProxy to trigger UAC b…☆142Updated 3 years ago
- A PoC package for hosting the CLR and executing .NET from Go☆77Updated last year
- frida based script which automates the process of discovering and exploiting DLL Hijacks in target binaries. The discovered binaries can …☆53Updated 2 years ago
- Another Go Shellcode Loader using Windows APIs☆141Updated 4 years ago
- ReturnGate, just like HellsGate.☆68Updated 3 years ago
- A SigFlip implement in golang☆51Updated 3 years ago
- load assembly executable file in memory☆41Updated 2 years ago
- 汇编语言编写Shellcode加载器源代码 https://payloads.online/archivers/2022-02-16/1/☆78Updated 3 years ago
- use aswArPot.sys to kill process☆68Updated 3 years ago
- Beacon compiled using clang☆72Updated 2 years ago
- Preventing 3rd Party DLLs from Injecting into your Malware☆25Updated 4 years ago
- Go implementation of the Heaven's Gate technique☆101Updated 4 years ago
- Golang implementation of Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll;☆32Updated 3 years ago
- Evasive loader to bypass static detection☆59Updated last year
- Bypass Detection By Randomising ROR13 API Hashes☆144Updated 3 years ago
- Proof of concept SMB C2 using named pipes in Golang☆25Updated 6 years ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆78Updated last year
- A wrapper of ldap_shell.py module which in ntlmrelayx☆62Updated 3 years ago
- Exploit for CVE-2023-36802 targeting MSKSSRV.SYS driver☆112Updated 2 years ago
- A swiss army knife tool for running, injecting and organizing your BOFs collection☆66Updated 4 months ago
- Silently Install Chrome Extension For Persistence☆94Updated last year
- ☆243Updated 2 years ago
- MacOS C2 Framework☆85Updated 4 years ago
- dump lsass tool☆38Updated 3 years ago