M0nster3 / RpcsDemoLinks
关于RPC一些绕EDR的tips
☆186Updated 2 years ago
Alternatives and similar repositories for RpcsDemo
Users that are interested in RpcsDemo are comparing it to the libraries listed below
Sorting:
- Cobalt Strike 二开项目☆183Updated 2 years ago
- 添加计划任务方法集合☆290Updated last year
- 远程创建任务计划工具☆187Updated 3 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆133Updated last year
- ☆154Updated last year
- 使用Visral Studio开发ShellCode☆205Updated last year
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆337Updated 3 years ago
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆161Updated last year
- beta☆116Updated 8 months ago
- 重构Beacon☆159Updated 10 months ago
- 使用 rust 实现 CobaltStrike 的 beacon || Using Rust to implement CobaltStrike's Beacon☆135Updated 3 months ago
- ☆65Updated 10 months ago
- ☆54Updated last year
- 无Windows API的新型恶意程序:自缺陷程序利用堆栈溢出的隐匿稳定攻击技术研究,A new type of malicious program without Windows API☆85Updated 2 months ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆166Updated 10 months ago
- 针对PE文件的分离的攻防对抗工具,红队、研究者的好帮手。目前支持文件头伪装、证书区段感染。A no-kill confrontation tool for the separation of PE files, a good helper for red teams and…☆263Updated 10 months ago
- c++ shellcode loader☆86Updated 3 years ago
- Callback Function Loader Implemented in Go☆139Updated last year
- ☆91Updated 3 years ago
- 集合多种方式的ShellcodeLoader☆125Updated last year
- Take a screenshot without injection for Cobalt Strike☆192Updated 2 years ago
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆69Updated 3 months ago
- 通过C/C++实现的 Windows RID Hijacking persistence technique (RID劫持 影子账户 账户克隆).☆79Updated 3 years ago
- Mssql利用工具☆269Updated last year
- 主要用于隐藏进程真实路径,进程带windows真签名☆111Updated 8 months ago
- IoM implant, C2 Framework and Infrastructure☆180Updated this week
- Binary Hollowing☆76Updated 9 months ago
- EDR绕过demo☆291Updated last year
- 域内普通域用户权限查找域内所有计算机上登录的用户☆150Updated 2 years ago
- 远程shellcode加载&权限维持+小功能☆298Updated last year