A simple C2 Framework written in modern C++
☆32Jul 2, 2026Updated last month
Alternatives and similar repositories for MalvexC2
Users that are interested in MalvexC2 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated last month
- Reflective DLL loader.☆27Jun 30, 2026Updated last month
- ☆15Mar 27, 2026Updated 5 months ago
- Staged DLL injection proof-of-concept built in C using Win32 APIs — developed in an isolated lab environment for red team certification s…☆42Jun 4, 2026Updated 2 months ago
- A PoC Cobalt Strike UDRL written in Rust☆34Jun 20, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆64Jul 12, 2026Updated last month
- NØW is a word-based shellcode encoding and obfuscation tool that transforms raw shellcode bytes into natural-looking English prose.☆78Jun 24, 2026Updated 2 months ago
- Adaptix C2 extender to support Cobalt Strike Malleable C2 profiles☆51Jun 28, 2026Updated 2 months ago
- demo unhooking functions in ntdll☆28Jul 15, 2025Updated last year
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆112Jul 14, 2026Updated last month
- Noradrenaline is a collection of high-performance post-exploitation shared libraries designed for native execution on macOS and Linux end…☆30Jul 6, 2026Updated last month
- multi layer encryption for payloads with options of delivery welcome to the Tenebris side☆26May 9, 2026Updated 3 months ago
- CVE-2026-45250: FreeBSD 14.4 setcred kernel buffer overflow (LPE)☆22Jul 23, 2026Updated last month
- .NET process monitor that hooks CLR at the native layer, dumps reflective assemblies from memory, and checks AMSI/ETW integrity vs on dis…☆41Jul 13, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Implementation of hello world in windows, focusing on binary size and malleability of windows binaries☆18Jul 3, 2025Updated last year
- Smuggling C2 comms through links previews☆18Jun 17, 2026Updated 2 months ago
- Phantom-Evasion-Loader is a standalone, pure x64 Assembly injection engine engineered to minimize the detection surface of modern EDR/XDR…☆110Aug 8, 2026Updated 3 weeks ago
- Ported from [LACUNA Chain](https://github.com/MazX0p/LACUNA-Chain) by Mohamed Alzhrani (0xmaz). lacuna-rs is a reusable Rust crate that …☆18Jul 2, 2026Updated last month
- Advanced EDR Evasion via AI Telemetry Spoofing & WASM Sandboxing. Project Onyx is a PoC Red Team pipeline designed to demonstrate advance…☆118Jun 30, 2026Updated 2 months ago
- IoT Firmware Deep Analysis: Automated reverse engineering and vulnerability discovery for IoT firmware binaries.☆43Updated this week
- A powerful Windows UI monitoring and DNS exfiltration tool written in Rust, combining advanced UI event capture capabilities with secure …☆20Mar 6, 2025Updated last year
- Stealth Windows keylogger.☆57Jan 11, 2026Updated 7 months ago
- executing shellcode directly from a python variable☆30Dec 20, 2025Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Phantom is project created to perform loading and executing unmanaged code in memory within an IIS environment running in full‑trust mode…☆108Jun 5, 2026Updated 2 months ago
- Windows Access token manipulation tool made in C#☆25Aug 24, 2025Updated last year
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆55Jul 15, 2023Updated 3 years ago
- KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.☆217Jul 8, 2026Updated last month
- Commandline spoofing on Windows☆100Jul 19, 2026Updated last month
- A truly Position Independent Code (PIC) NimPlant C2 beacon written in C, without reflective loading.☆67Feb 11, 2025Updated last year
- An advanced utility for converting Windows Portable Executable (PE) files to position-independent code (PIC) shellcode. It enables execut…☆65Mar 1, 2025Updated last year
- Evasive loader for .NET Framework assemblies☆52May 14, 2026Updated 3 months ago
- A Rust version of Mirage, a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆40Mar 6, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Usermode detector that catches indirect syscalls. Traps Hell's Hall, Tartarus' Gate, RecycledGate, and VEH syscalls & Many more.☆88Jun 15, 2026Updated 2 months ago
- A POC tool for exploring dev-tunnels☆68May 5, 2026Updated 3 months ago
- ☆54May 31, 2025Updated last year
- Tailscale/Headscale C2 profile and agent for Mythic☆34Mar 14, 2026Updated 5 months ago
- A Proof of Concept demonstrating CET-compliant callstack spoofing in Rust. It leverages Windows Thread Pool and Enum Callback trampolinin…☆59Jul 12, 2026Updated last month
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆50Jul 23, 2026Updated last month
- The samples referenced in my book, Evasive Malware (No starch Press)☆62Feb 20, 2026Updated 6 months ago