NUL0x4C / HellShell
transform your payload into ipv4/ipv6/mac arrays
☆174Updated 2 years ago
Alternatives and similar repositories for HellShell:
Users that are interested in HellShell are comparing it to the libraries listed below
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆574Updated 8 months ago
- ☆255Updated last year
- A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk☆452Updated 9 months ago
- Cobalt Strike BOF for evasive .NET assembly execution☆221Updated 2 weeks ago
- Use hardware breakpoint to dynamically change SSN in run-time☆250Updated last year
- Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection☆288Updated 11 months ago
- Reduce Entropy And Obfuscate Youre Payload With Serialized Linked Lists☆430Updated last year
- COM Hijacking VOODOO☆289Updated last month
- Attempt at Obfuscated version of SharpCollection☆206Updated last week
- shellcode loader for your evasion needs☆317Updated 5 months ago
- A new AMSI Bypass technique using .NET ALI Call Hooking.☆190Updated 2 years ago
- Porting of BOF InlineExecute-Assembly to load .NET assembly in process but with patchless AMSI and ETW bypass using hardware breakpoint.☆221Updated 2 years ago
- BOF for Kerberos abuse (an implementation of some important features of the Rubeus).☆456Updated 2 weeks ago
- Collection of UAC Bypass Techniques Weaponized as BOFs☆500Updated last year
- Patching AmsiOpenSession by forcing an error branching☆145Updated last year
- Credential Guard Bypass Via Patching Wdigest Memory☆321Updated 2 years ago
- Kill AV/EDR leveraging BYOVD attack☆350Updated last year
- Evasive Golang Loader☆131Updated 8 months ago
- A list of python tools to help create an OPSEC-safe Cobalt Strike profile.☆416Updated last year
- A technique that can be used to bypass AV/EDR memory scanners. This can be used to hide well-known and detected shellcodes (such as msfve…☆514Updated 10 months ago
- AV bypass while you sip your Chai!☆220Updated 11 months ago
- A Beacon Object File (BOF) template for Visual Studio☆188Updated last month
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆108Updated last year
- Shaco is a linux agent for havoc☆159Updated last year
- A Beacon Object File (BOF) is a compiled C program, written to a convention that allows it to execute within a Beacon process and use int…☆172Updated last month
- This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp…☆415Updated last year
- Modules used by the Havoc Framework☆229Updated 10 months ago
- A proof of concept for abusing exception handlers to hook and bypass user mode EDR hooks.☆185Updated last year
- Execute shellcode from a remote-hosted bin file using Winhttp.☆233Updated last year
- .NET assembly loader with patchless AMSI and ETW bypass☆326Updated last year