☆57Jan 15, 2024Updated 2 years ago
Alternatives and similar repositories for obfuscator-llvm
Users that are interested in obfuscator-llvm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆48Mar 15, 2023Updated 3 years ago
- ☆103Oct 7, 2023Updated 2 years ago
- An example reference design for a proposed BOF PE☆246Jan 23, 2026Updated 8 months ago
- A swiss army knife tool for running, injecting and organizing your BOFs collection☆76May 27, 2026Updated 3 months ago
- Generic PE loader for fast prototyping evasion techniques☆246Jul 2, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Cobalt Strike beacon object file that allows you to query and make changes to the Windows Registry☆31Feb 11, 2021Updated 5 years ago
- ☆128Jun 28, 2023Updated 3 years ago
- A simple BOF that frees UDRLs☆123May 29, 2022Updated 4 years ago
- ☆122Oct 9, 2023Updated 2 years ago
- Files for http://blog.deniable.org/posts/windows-callbacks/☆12Jan 1, 2023Updated 3 years ago
- Cobalt Strike User Defined Reflective Loader (UDRL). Check branches for different functionality.☆153Jul 20, 2022Updated 4 years ago
- An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are a…☆146Oct 1, 2022Updated 3 years ago
- string/file/shellcode encryptor using AES/XOR☆11Oct 15, 2023Updated 2 years ago
- POC tool to convert CobaltStrike BOF files to raw shellcode☆218Nov 5, 2021Updated 4 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Windows Portable Device COM BOF☆17Mar 30, 2026Updated 5 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆1,031Jun 4, 2024Updated 2 years ago
- Hardened Proof of Concept of D/Invoke Process Injection malware☆41Jul 23, 2020Updated 6 years ago
- Aggressorscript that turns the headless aggressor client into a (mostly) functional cobalt strike client.☆147Sep 8, 2022Updated 4 years ago
- Beacon Object File (BOF) to obtain Entra tokens via authcode flow.☆140Jan 17, 2026Updated 8 months ago
- ☆24Feb 1, 2025Updated last year
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆769Jul 22, 2023Updated 3 years ago
- ☆93May 14, 2022Updated 4 years ago
- A lexer and parser for Sleep☆21Feb 20, 2026Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Community Eventing and Scripting examples☆22Aug 11, 2025Updated last year
- A BOF that runs unmanaged PEs inline☆702Oct 23, 2024Updated last year
- Resolve syscall numbers at runtime for all Windows versions.☆59Nov 21, 2024Updated last year
- A .NET Runtime for Cobalt Strike's Beacon Object Files☆785Sep 4, 2024Updated 2 years ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆714Sep 9, 2026Updated 2 weeks ago
- Code for blog written at 0xdarkvortex.dev Red Team TTPs Part 2☆19Oct 8, 2020Updated 5 years ago
- A small collection of Crystal Palace PIC loaders designed for use with Cobalt Strike☆243Apr 11, 2026Updated 5 months ago
- ☆99Sep 1, 2024Updated 2 years ago
- ☆658Sep 10, 2026Updated last week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Linker for Beacon Object Files☆191Sep 16, 2026Updated last week
- Proof of concept demonstrating a method of proxying syscalls indirectly☆10Jul 3, 2024Updated 2 years ago
- ☆130Jun 28, 2023Updated 3 years ago
- ☆84Nov 1, 2023Updated 2 years ago
- The code is a pingback to the Dark Vortex blog: https://0xdarkvortex.dev/hiding-memory-allocations-from-mdatp-etwti-stack-tracing/☆218Jan 29, 2023Updated 3 years ago
- BOF to steal Teams cookies☆133Nov 2, 2025Updated 10 months ago
- BypassCredGuard CS BOF☆54Jan 23, 2025Updated last year