PN-Tester / AppxPotatoLinks
AppX RPC Local Privilege Escalation - Windows 10/11
☆91Updated last year
Alternatives and similar repositories for AppxPotato
Users that are interested in AppxPotato are comparing it to the libraries listed below
Sorting:
- Silently Install Chrome Extension For Persistence☆96Updated last year
- VBS-Obfuscator-GO is a Go-based tool designed for obfuscating VBScript (VBS) files. It transforms readable VBScript code into a less reco…☆37Updated 8 months ago
- CVE-2024-35250 的 Beacon Object File (BOF) 实现。☆23Updated last year
- POC tool to extract all persistent clipboard history data from clipboard service process memory☆52Updated last year
- SharpSilentChrome is a C# project that "silently" installs browser extensions on Google Chrome or MS Edge by updating the browsers' Prefe…☆184Updated 5 months ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆88Updated 2 years ago
- CVE-2023-21707 EXP☆28Updated 2 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆67Updated 3 months ago
- Shellcode Reductio Entropy Tools☆74Updated 2 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆27Updated last year
- Evasive loader to bypass static detection☆59Updated last year
- Exploit for CVE-2023-36802 targeting MSKSSRV.SYS driver☆112Updated 2 years ago
- ☆28Updated 2 years ago
- A BOF/COFF loader implemented in Go and CGO.☆22Updated last year
- Bypass YARA rule Windows_Trojan_CobaltStrike_f0b627fc by generating alternative shellcode sequences.☆52Updated 3 months ago
- vehsyscall:a syscall project that may bypass EDR☆60Updated last year
- ASPX ShellCode Loader☆54Updated last year
- ☆43Updated 2 years ago
- Help red teams find opsec processes during engagements☆43Updated last year
- A Simple PoC☆22Updated last year
- ShadeLoader is a shellcode loader designed to bypass most antivirus software. 壳代码, 杀毒软件, 绕过☆42Updated 7 months ago
- can convert EXE/DLL into position-independent shellcode☆38Updated 3 months ago
- Kill Everything AV/EDR☆27Updated last year
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆78Updated last year
- BOF to run PE in Cobalt Strike Beacon without console creation☆173Updated last month
- ☆31Updated 2 years ago
- Binary Hollowing☆90Updated last year
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆26Updated last year
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Updated 2 years ago
- 一个普通的BOF用来BypassUAC☆22Updated last year