Lavender-exe / WKL-ToolsLinks
List of tools to use in the Advance Red Team Operations course from White Knight Labs
☆14Updated last year
Alternatives and similar repositories for WKL-Tools
Users that are interested in WKL-Tools are comparing it to the libraries listed below
Sorting:
- a port of privkit bof for havoc☆23Updated 2 years ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆91Updated 9 months ago
- This is my starred repositories including the description for each tool. Makes search/filter over them easier.☆61Updated 11 months ago
- The Swiss army knife of evasion tool that bypasses AMSI, Applocker, and CLM mode simultaneously.☆26Updated last year
- Malicious powershell scripts loader designed to avoid detection.☆61Updated 2 years ago
- Dynamic shellcode loader with sophisticated evasion capabilities☆283Updated 4 months ago
- Encodes a payload within a generated mock-CSS file☆59Updated 2 years ago
- Utilities for obfuscating shellcode☆98Updated 4 months ago
- A havoc UI python module to help in reporting and vulnerabilities to exploit on an internal network.☆14Updated 2 years ago
- Public repo of some woking evilginx phishlets☆40Updated last year
- .bin file to shellcode convertor☆39Updated last year
- D/Invoke standalone shellcode runners☆39Updated 2 years ago
- A C2 framework built for my bachelors thesis☆57Updated 3 weeks ago
- Selective In-Memory Syscall Unhooking, a stealthy method to bypass user-mode hooks in ntdll.dll☆25Updated 7 months ago
- Small project to facilitate creation of .lnk payloads☆76Updated 3 years ago
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆146Updated last year
- Excel Add In Payload Generator☆14Updated 2 years ago
- ☆75Updated 10 months ago
- A Havoc UI tool to pivot onto a machine using ligolo-ng☆50Updated 2 years ago
- Good CLR Host with Native patchless AMSI Bypass☆102Updated 9 months ago
- Built for red teamers, by red teamers - an MCP tool for malware development, OPSEC testing, and supporting custom loader design during re…☆43Updated 6 months ago
- Situational Awareness script to identify how and where to run implants☆67Updated last year
- Havoc plugin allowing in-memory execution of PowerShell cmdlets☆13Updated 2 years ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆103Updated 9 months ago
- Advanced Windows authentication token extraction and decryption tool for red team operations and security research☆83Updated last month
- Encode shellcode into dictionary words for evasion and entropy reduction☆40Updated 2 months ago
- Another version of .NET loader provides capabilities of bypassing ETW and AMSI, utilizing VEH for syscalls and loading .NET assemblies☆50Updated 7 months ago
- HTML smuggling is not an evil, it can be useful☆14Updated 3 years ago
- Cortex EDR Ransomware protection Bypass☆25Updated last year
- A Kerberos AP-REQ hijacking tool with DNS unsecure updates abuse.☆136Updated last year