M0nster3 / RpcsDemo
关于RPC一些绕EDR的tips
☆175Updated 2 years ago
Alternatives and similar repositories for RpcsDemo:
Users that are interested in RpcsDemo are comparing it to the libraries listed below
- Cobalt Strike 二开项目☆182Updated 2 years ago
- 添加计划任务方法集合☆279Updated last year
- ☆154Updated 10 months ago
- 远程创建任务计划工具☆185Updated 2 years ago
- Generate DLL Hijacking Payload in batches.☆131Updated 8 months ago
- beta☆115Updated 6 months ago
- 使用Visral Studio开发ShellCode☆192Updated last year
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆127Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆147Updated 10 months ago
- ☆60Updated 8 months ago
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆333Updated 3 years ago
- ☆91Updated 3 years ago
- IoM implant, C2 Framework and Infrastructure☆149Updated last week
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆157Updated 8 months ago
- ☆53Updated last year
- Binary Hollowing☆74Updated 7 months ago
- 使用 rust 实现 CobaltStrike 的 beacon || Using Rust to implement CobaltStrike's Beacon☆126Updated last month
- 重构Beacon☆154Updated 8 months ago
- 无Windows API的新型恶意程序:自缺陷程序利用堆栈溢出的隐匿稳定攻击技术研究,A new type of malicious program without Windows API☆83Updated 3 weeks ago
- 通过C/C++实现的 Windows RID Hijacking persistence technique (RID劫持 影子账户 账户克隆).☆76Updated 3 years ago
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆66Updated last month
- 集合多种方式的ShellcodeLoader☆123Updated last year
- c++ shellcode loader☆84Updated 3 years ago
- 一款基于Http.sys的利用工具☆190Updated 2 years ago
- A Blind EDR Project for Educational Purposes☆31Updated 3 months ago
- Take a screenshot without injection for Cobalt Strike☆185Updated last year
- more conveniently Visual-Studio-BOF-template☆62Updated last year
- 白加黑的快速生成器(针对IAT类型)☆99Updated 2 years ago
- impacket编程手册☆104Updated last year
- 收集云沙箱上线C2的ip,如微X、奇XX、3X0、virustX等☆123Updated last year