CBLabresearch / ClematisLinks
PE to shellcode
☆266Updated last year
Alternatives and similar repositories for Clematis
Users that are interested in Clematis are comparing it to the libraries listed below
Sorting:
- beta☆120Updated last year
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆213Updated 3 years ago
- IoM implant, C2 Framework and Infrastructure☆246Updated 2 weeks ago
- Process injection alternative☆404Updated last year
- Reproducing Spyboy technique, which involves terminating all EDR/XDR/AVs processes by abusing the zam64.sys driver☆293Updated 9 months ago
- Binary Hollowing☆94Updated last year
- Open repository for learning dynamic shellcode loading (sample in many programming languages)☆273Updated 6 months ago
- A Tool that aims to evade av with binary padding☆160Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆201Updated last year
- Next Generation C2 Framework, IoM-server/client☆408Updated this week
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader.☆280Updated 9 months ago
- ☆100Updated 2 years ago
- A Windows potato to privesc☆389Updated last year
- C2 redirector base on caddy☆213Updated last year
- WPTaskScheduler RPC Persistence & CVE-2024-49039 via Task Scheduler☆135Updated 6 months ago
- Dynamically convert an unmanaged EXE or DLL file to PIC shellcode by prepending a shellcode stub.☆325Updated last year
- ☆244Updated 2 years ago
- CPP AV/EDR Killer☆470Updated 2 years ago
- Abuse Impersonate Privilege from Service to SYSTEM like other potatoes do☆398Updated 2 years ago
- A beacon object file implementation of PoolParty Process Injection Technique.☆432Updated 2 years ago
- A Beacon Object File (BOF) template for Visual Studio☆262Updated 2 months ago
- This is the tool to dump the LSASS process on modern Windows 11☆546Updated 3 months ago
- Yet another C++ Cobalt Strike beacon dropper with Compile-Time API hashing and custom indirect syscalls execution☆198Updated 8 months ago
- ShadeLoader is a shellcode loader designed to bypass most antivirus software. 壳代码, 杀毒软件, 绕过☆42Updated 8 months ago
- Bypassing UAC with SSPI Datagram Contexts☆460Updated 2 years ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆78Updated last year
- GetProcAddressByHash/remap/full dll unhooking/Tartaru's Gate/Spoofing Gate/universal/Perun's Fart/Spoofing-Gate/EGG/RecycledGate/syswhisp…☆331Updated last year
- 关于RPC一些绕EDR的tips☆198Updated 2 years ago
- A Cobalt Strike beacon implemented in Nim.☆26Updated 6 months ago
- Shellcode obfuscation tool to avoid AV/EDR.☆130Updated 2 years ago