CCob / goreflect
Reflective DLL loading of your favorite Golang program
☆166Updated 5 years ago
Alternatives and similar repositories for goreflect:
Users that are interested in goreflect are comparing it to the libraries listed below
- Allow a Go process to dynamically load .NET assemblies☆148Updated 4 years ago
- Reflectively load PE☆104Updated 4 years ago
- Script to use SysWhispers2 direct system calls from Cobalt Strike BOFs☆122Updated 2 years ago
- Go implementation of the Heaven's Gate technique☆97Updated 4 years ago
- Cobalt Strike Beacon Object Files☆160Updated 2 years ago
- C# Shellcode Runner to execute shellcode via CreateRemoteThread and SetThreadContext to evade Get-InjectedThread☆119Updated 5 years ago
- credential dump using foreshaw technique using SeTrustedCredmanAccessPrivilege☆122Updated 3 years ago
- SharpTask is a simple code set to interact with the Task Scheduler service api and is compatible with Cobalt Strike.☆88Updated 4 years ago
- ☆92Updated 3 years ago
- Cobalt Strike Aggressor extension for Visual Studio Code☆126Updated 8 months ago
- External C2 Using IE COM Objects☆98Updated 6 years ago
- Collection of beacon object files for use with Cobalt Strike to facilitate 🐚.☆174Updated 4 years ago
- Source code for HppDLL - local password dumping using MsvpPasswordValidate hooks☆2Updated 4 years ago
- Collection of CobaltStrike beacon object files☆102Updated 3 years ago
- C# PoC implementation for bypassing AMSI via in memory patching☆65Updated 4 years ago
- ☆112Updated 4 years ago
- ☆147Updated 4 years ago
- Load .net assemblies from memory while having them appear to be loaded from an on-disk location.☆163Updated 3 years ago
- WMI Event Subscription Persistence in C#☆112Updated 5 years ago
- Yet another LSASS dumper☆76Updated 4 years ago
- ☆142Updated 2 years ago
- Example code for using named pipe output with beacon ReflectiveDLLs☆113Updated 4 years ago
- CSHARP DCOM Fun☆127Updated 5 years ago
- ☆172Updated 4 years ago
- Zipper, a CobaltStrike file and folder compression utility.☆215Updated 5 years ago
- PoC to interact with local/remote registry hives through WMI☆85Updated 4 years ago
- A very proof-of-concept port of InlineWhispers for using syscalls in Nim projects.☆165Updated 3 years ago
- Implementation of b4rtiks's SharpMiniDump using NTFS transactions to avoid writting the minidump to disk and exfiltrating it via HTTPS us…☆70Updated 4 years ago
- Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that b…☆216Updated 3 years ago
- Pass the Hash to a named pipe for token Impersonation☆140Updated 3 years ago