C5Hackr / ARM64_AmsiPatchLinks
☆21Updated 7 months ago
Alternatives and similar repositories for ARM64_AmsiPatch
Users that are interested in ARM64_AmsiPatch are comparing it to the libraries listed below
Sorting:
- Golang Implementation of Hell's gate☆20Updated 2 years ago
- Mythic C2 wrapper for NimSyscallPacker☆25Updated 8 months ago
- Extension functionality for the NightHawk operator client☆26Updated 2 years ago
- Windows Access token manipulation tool made in C#☆24Updated 3 months ago
- ☆19Updated last year
- An interactive TUI tool to create Brute Ratel C4 profiles based on BURP browsing data.☆28Updated 6 months ago
- Ludus role for deploying a Mythic Teamserver onto Linux servers☆23Updated 8 months ago
- Cobalt Strike notifications via NTFY.☆15Updated last year
- an Improoved Version of 0xNinjaCyclone´s EarlyCascade Code☆22Updated 9 months ago
- Proxy function calls through the thread pool with ease☆31Updated 9 months ago
- A proof of concept AMSI & ETW bypass using trampolines for hooking and modifying execution flow☆17Updated 5 months ago
- Unix Process hollowing in rust☆22Updated 11 months ago
- An improved fork of NoPhish.☆13Updated 6 months ago
- RunPE adapted for x64 and written in C, does not use RWX☆28Updated last year
- Repository to gather the BOF files I will be developing☆10Updated last year
- Templates for developing your own listeners and agents for AdaptixC2.☆38Updated 2 weeks ago
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆20Updated last year
- Example of using Sleep to create better named pipes.☆41Updated 2 years ago
- ☆38Updated 8 months ago
- A pure C version of SymProcAddress☆30Updated last year
- Just another Process Injection using Process Hollowing technique.☆19Updated 2 years ago
- Another version of .NET loader provides capabilities of bypassing ETW and AMSI, utilizing VEH for syscalls and loading .NET assemblies☆49Updated 5 months ago
- ☆30Updated 3 months ago
- A simple rpc2socks alternative in pure Go.☆31Updated last year
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆30Updated 10 months ago
- rust port of pspy with support for process monitoring over dbus☆35Updated 5 months ago
- single-threaded event driven sleep obfuscation poc for linux☆35Updated 5 months ago
- Aggressor script to automatically download and load an arsenal of open source and private Cobalt Strike tooling.☆44Updated last year
- A simple BOF that disables some logging with NtSetInformationProcess☆14Updated 2 years ago
- Impersonate Windows tokens in Nim☆23Updated 4 months ago