Haunted-Banshee / Shellcode-Hastur
Shellcode Reductio Entropy Tools
☆65Updated last year
Alternatives and similar repositories for Shellcode-Hastur:
Users that are interested in Shellcode-Hastur are comparing it to the libraries listed below
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆71Updated last year
- Cobalt Strike BOF that Add a user to localgroup by samr☆127Updated 2 years ago
- more conveniently Visual-Studio-BOF-template☆62Updated last year
- Binary Hollowing☆71Updated 6 months ago
- Cobalt Strike BOF that Add an admin user☆72Updated 2 years ago
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆64Updated 3 weeks ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆88Updated last year
- ☆91Updated 3 years ago
- command execute without 445 port☆53Updated 3 years ago
- Take a screenshot without injection for Cobalt Strike☆184Updated last year
- ☆49Updated last year
- 免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus☆67Updated 2 years ago
- Silently Install Chrome Extension For Persistence☆49Updated 8 months ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆31Updated 2 years ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆42Updated last year
- Hidedump:a lsassdump tools that may bypass EDR☆50Updated 10 months ago
- vehsyscall:a syscall project that may bypass EDR☆54Updated last year
- Zerologon exploit with restore DC password automatically☆133Updated last year
- 通过websocket在IIS8(Windows Server 2012)以上实现socks5代理☆85Updated last year
- Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.☆33Updated 5 months ago
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆56Updated last year
- Zerologon自动化脚本☆88Updated last year
- ☆40Updated last year
- impacket编程手册☆102Updated last year
- ☆100Updated 2 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆42Updated 10 months ago
- Execute Remote Assembly with args passing and with AMSI and ETW patching .☆32Updated 2 years ago
- ☆33Updated last year
- RPC 调用添加ssp扩展dump lsass☆18Updated 2 years ago