Enelg52 / Backpack
Golang packer that use process hollowing
ā17Updated 2 years ago
Alternatives and similar repositories for Backpack:
Users that are interested in Backpack are comparing it to the libraries listed below
- Simple PoCs for utilizing Windows syscalls in Goā15Updated 4 years ago
- Proof of concept SMB C2 using named pipes in Golangā25Updated 5 years ago
- ššŖ² Malleable C2 profiles parser and assembler written in golangā61Updated 8 months ago
- Preventing 3rd Party DLLs from Injecting into your Malwareā25Updated 3 years ago
- Shellcode implementation of Reflective DLL Injection by Golang. Convert DLLs to position independent shellcodeā58Updated 3 years ago
- A PoC package for hosting the CLR and executing .NET from Goā68Updated 6 months ago
- Generator of https://github.com/TheWover/donut in pure Go. supports compression, AMSI/WLDP/ETW bypass, etc.ā41Updated last year
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dllā43Updated 2 years ago
- Reflective DLL injection Executionā19Updated 2 years ago
- Thanks to @d35haā12Updated 3 years ago
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected processā43Updated last year
- Indirect NT syscalls LSASS dumper.ā40Updated last year
- Golang implementation of @CCob's C# ThreadlessInjectā32Updated 8 months ago
- Section Mapping Process Injection modified with SysWhisper2 (sw2-secinject): Cobalt Strike BOFā41Updated 2 years ago
- It stinksā101Updated 2 years ago
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callbackā67Updated 2 years ago
- Without closing windows defender, to make defender useless by removing its token privileges and lowering the token integrity.ā33Updated 2 years ago
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loaderā41Updated last year
- A third-party Gopher Assassin for the Havoc Framework.ā45Updated last year
- This is a simple project made to evade https://github.com/thefLink/Hunt-Sleeping-Beacons by using a busy wait instead of beacon's built iā¦ā32Updated 3 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.ā80Updated 3 years ago
- Load shellcode via HELLGATE, Rewrite hellgate with .net framework for learning purpose.ā15Updated 3 years ago
- A basic C2 framework written in Cā58Updated 6 months ago
- A nice process dumping toolā78Updated 2 years ago
- Evasive loader to bypass static detectionā56Updated last year
- Titan: A generic user defined reflective DLL for Cobalt Strikeā75Updated 2 years ago
- Savoir is a tool to perform tasks during internal security assessmentā19Updated 2 years ago
- Beacon Object File to delete token privileges and lower the integrity level to untrusted for a specified processā32Updated 2 years ago
- Inject shellcode to process using Windows NTAPI for bypassing EDRs and Antivirusesā40Updated 4 years ago
- ReturnGate, just like HellsGate.ā66Updated 2 years ago