Enelg52 / BackpackLinks
Golang packer that use process hollowing
☆18Updated 3 years ago
Alternatives and similar repositories for Backpack
Users that are interested in Backpack are comparing it to the libraries listed below
Sorting:
- A PoC package for hosting the CLR and executing .NET from Go☆77Updated last year
- Process injection techniques written in Go.☆64Updated 2 years ago
- Simple PoCs for utilizing Windows syscalls in Go☆16Updated 4 years ago
- 🔎🪲 Malleable C2 profiles parser and assembler written in golang☆65Updated last year
- Without closing windows defender, to make defender useless by removing its token privileges and lowering the token integrity.☆31Updated 3 years ago
- execute a PE in the address space of another PE aka process hollowing☆60Updated 4 years ago
- Preventing 3rd Party DLLs from Injecting into your Malware☆25Updated 4 years ago
- Reflectively load PE☆105Updated 5 years ago
- Shellcode implementation of Reflective DLL Injection by Golang. Convert DLLs to position independent shellcode☆62Updated 4 years ago
- It stinks☆103Updated 3 years ago
- eXtensiable Malware Toolkit: Full Featured Golang C2 Framework with Awesome Features☆102Updated 4 months ago
- Golang C2 and Beacon/Agent built from the ground up for scalability and expandability☆14Updated 4 years ago
- Demo of process injection, using Nt, direct syscall, etc.☆28Updated 4 years ago
- Exploring in-memory execution of .NET☆138Updated 3 years ago
- Titan: A generic user defined reflective DLL for Cobalt Strike☆85Updated 3 years ago
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callback☆68Updated 3 years ago
- Extracts TEXT section of a PE, ELF, or Mach-O executable to shellcode☆105Updated 2 years ago
- Go implementation of the Heaven's Gate technique☆101Updated 4 years ago
- Golang implementation of @CCob's C# ThreadlessInject☆31Updated last year
- BOF combination of KillDefender and Backstab☆171Updated 2 years ago
- ☆50Updated 3 years ago
- Proof of concept SMB C2 using named pipes in Golang☆25Updated 6 years ago
- Thanks to @d35ha☆13Updated 4 years ago
- This project will guide yout to awareness of injection in almost every window API and process.☆24Updated 3 years ago
- Beacon Object File allowing creation of Beacons in different sessions.☆82Updated 3 years ago
- Patch AMSI and ETW in remote process via direct syscall☆83Updated 3 years ago
- Process Injection Techniques with Golang☆80Updated 5 years ago
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆48Updated 2 years ago
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆70Updated last year
- Exploits undocumented elevated COM interface ICMLuaUtil via process spoofing to edit registry then calls ColorDataProxy to trigger UAC b…☆142Updated 3 years ago