EvilBytecode / Evilbytecode-Shellcode-Go-Tactics
A mutliple tactics to execute shellcode in go :}
☆14Updated 6 months ago
Alternatives and similar repositories for Evilbytecode-Shellcode-Go-Tactics:
Users that are interested in Evilbytecode-Shellcode-Go-Tactics are comparing it to the libraries listed below
- ☆45Updated 9 months ago
- ShadeLoader is a shellcode loader designed to bypass most antivirus software. 壳代码, 杀毒软件, 绕过☆39Updated 5 months ago
- replace the shellcode chatacters so that reduce the entropy☆16Updated last year
- CSharp reimplementation of Venoma, another C++ Cobalt Strike beacon dropper with custom indirect syscalls execution☆41Updated 9 months ago
- Help red teams find opsec processes during engagements☆22Updated last month
- Evasive loader to bypass static detection☆56Updated last year
- (EDR) Dll Unhooking = kernel32.dll, kernelbase.dll, ntdll.dll, user32.dll, apphelp.dll, msvcrt.dll.☆18Updated 6 months ago
- Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.☆28Updated 3 months ago
- Explorer Persistence technique : Hijacking cscapi.dll order loading path and writing our malicious dll into C:\Windows\cscapi.dll , when …☆80Updated 2 years ago
- A Simple PoC☆19Updated 8 months ago
- ☆21Updated last year
- VBS-Obfuscator-GO is a Go-based tool designed for obfuscating VBScript (VBS) files. It transforms readable VBScript code into a less reco…☆33Updated 5 months ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆71Updated 11 months ago
- Self Cleanup in post-ex job☆48Updated 4 months ago
- ☆27Updated last year
- A simple Sleepmask BOF example☆81Updated 4 months ago
- TeamServer and Client of Exploration Command and Control Framework☆83Updated this week
- Shellcode Reductio Entropy Tools☆64Updated last year
- Repository of scripts from my blog post on bypassing the YARA rule Windows_Trojan_CobaltStrike_f0b627fc by generating alternative shellco…☆26Updated 3 months ago
- Binary Hollowing☆68Updated 4 months ago
- CVE-2024-38100 Windows Leaked Wallpaper Escelation to RCE vulnerability☆11Updated 5 months ago
- vehsyscall:a syscall project that may bypass EDR☆52Updated 10 months ago
- ☆39Updated last year
- Silently Install Chrome Extension For Persistence☆48Updated 6 months ago
- ASPX ShellCode Loader☆51Updated last year
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆39Updated last year
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆41Updated 9 months ago
- Generator of https://github.com/TheWover/donut in pure Go. supports compression, AMSI/WLDP/ETW bypass, etc.☆41Updated last year
- A Python-based VBScript Code Obfuscator☆31Updated 8 months ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆32Updated last year