15-stage Windows malware development & analysis course in Rust. Red team builds it, blue team detects it. All 15 binaries achieved 0/76 on VirusTotal.
☆299Mar 27, 2026Updated 5 months ago
Alternatives and similar repositories for goodboy-framework
Users that are interested in goodboy-framework are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Evasive loader for .NET Framework assemblies☆83May 12, 2026Updated 4 months ago
- Polymorphic PE rewriter for Windows x64 , rewrites binaries into semantically identical but byte-different variants☆200Jun 6, 2026Updated 3 months ago
- Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.☆400Updated this week
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆51Jul 23, 2026Updated 2 months ago
- A tool to convert windows registry export files into windows hive files that can be used to replace NTUSER.MAN☆183Jan 26, 2026Updated 7 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆508Mar 15, 2026Updated 6 months ago
- A stealthy stager designed for shellcode payloads staged with http/https like Sliver, or on github raw.☆62Jul 20, 2026Updated 2 months ago
- Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.☆420Sep 3, 2026Updated 2 weeks ago
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆106Apr 4, 2026Updated 5 months ago
- COM Windows Persistence Technique☆89Apr 27, 2026Updated 4 months ago
- Proof of Concept (PoC) implant for creating custom Cobalt Strike Beacons☆218Feb 11, 2026Updated 7 months ago
- Active Directory forensic framework☆16May 18, 2026Updated 4 months ago
- A stealthy and modular Windows loader designed to bypass modern EDR solutions using Module Stomping, Stack Duplication, and Advanced Slee…☆110Jul 26, 2026Updated last month
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆317Aug 31, 2026Updated 3 weeks ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- PolyEngine is an evasive PE packer designed for CTF challenges and low-level Windows security education. It focuses on bypassing EDR and …☆165Aug 6, 2026Updated last month
- Lightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephe…☆571Oct 3, 2025Updated 11 months ago
- Adaptix C2 extender to support Cobalt Strike Malleable C2 profiles☆50Jun 28, 2026Updated 2 months ago
- Technical Reference to multiple relay techniques☆193May 21, 2026Updated 4 months ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 5 months ago
- Static analysis & exploitation-triage toolkit for Windows kernel drivers. Discover IOCTLs, Symbolic Links, and check cert , and Downlaods…☆203Apr 27, 2026Updated 4 months ago
- A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive …☆1,542May 5, 2026Updated 4 months ago
- Adaptix C2 service plugin that drives LitterBox payload analysis from the operator UI.☆65May 4, 2026Updated 4 months ago
- Phantom is project created to perform loading and executing unmanaged code in memory within an IIS environment running in full‑trust mode…☆107Jun 5, 2026Updated 3 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- .NET CLR-Stomping☆146May 20, 2026Updated 4 months ago
- NØW is a word-based shellcode encoding and obfuscation tool that transforms raw shellcode bytes into natural-looking English prose.☆91Jun 24, 2026Updated 2 months ago
- ☆69Jul 12, 2026Updated 2 months ago
- AdaptixC2 default beacon agent extended to support Crystal Palace loaders.☆63May 4, 2026Updated 4 months ago
- A credential extraction BOF for Veeam Backup and Replication and Veeam One☆80Sep 16, 2026Updated last week
- This repo contains the results of an internal re-write of impacket I undertook at my current company. It contains some of the IoCs found …☆331Sep 7, 2026Updated 2 weeks ago
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆55Mar 30, 2026Updated 5 months ago
- The Azure Execution Tool☆159Feb 6, 2026Updated 7 months ago
- Windows绕过EDR实现DumpHash☆262Jul 30, 2026Updated last month
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Modify machine code in binaries with alternative x64 assembly opcodes for AV evasion☆242Sep 11, 2026Updated last week
- KHAOS is a modern C2 framework that routes agent traffic through cloud services already trusted by enterprise networks.☆239Sep 15, 2026Updated last week
- This cheatsheet maps common impacket workflows to their modern alternatives☆304May 30, 2026Updated 3 months ago
- DCOM in memory and fileless lateral movement techniques through .Net deserilization☆293Jun 22, 2026Updated 3 months ago
- Create local administrators in Windows using the SAMR API. In C#, Crystal, Python, Rust, Golang, Nim and Deno (Javascript)☆97Aug 31, 2026Updated 3 weeks ago
- AV/EDR evasion via direct and indirect system calls Windows NT 3.1 through Windows 11 24H2 · x64 · x86 · WoW64 · ARM64☆564Mar 7, 2026Updated 6 months ago
- Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijac…☆159Jul 20, 2026Updated 2 months ago