S12cybersecurity / GhostlyHollowingCrypterLinks
Advanced in-memory process injection using transient SEC_IMAGE sections, custom crypter, and ADS payload delivery no disk traces, maximum stealth.
☆14Updated 5 months ago
Alternatives and similar repositories for GhostlyHollowingCrypter
Users that are interested in GhostlyHollowingCrypter are comparing it to the libraries listed below
Sorting:
- Nim process hollowing loader☆60Updated 4 months ago
- Selective In-Memory Syscall Unhooking, a stealthy method to bypass user-mode hooks in ntdll.dll☆20Updated 4 months ago
- Repository to gather the .NET malware I will be developing☆18Updated 8 months ago
- HTML smuggling is not an evil, it can be useful☆14Updated 2 years ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆87Updated 7 months ago
- Rewrite to fit my needs☆32Updated last year
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- A tool to modify SCCM remote control settings on the client machine, enabling remote control without permission prompts or notifications.…☆112Updated last year
- Public repo of some woking evilginx phishlets☆39Updated last year
- Cortex EDR Ransomware protection Bypass☆25Updated 10 months ago
- Classic Process Injection with Memory Evasion Techniques implemantation☆72Updated 2 years ago
- Dynamic shellcode loader with sophisticated evasion capabilities☆264Updated 2 months ago
- ☆42Updated last year
- A C2 framework built for my bachelors thesis☆56Updated last year
- Automated Evilginx phishlet creator Extension for Burpsuite☆59Updated 10 months ago
- Small project to facilitate creation of .lnk payloads☆75Updated 3 years ago
- DLL Hijacking and Mock directories technique to bypass Windows UAC security feature and getting high-level privileged reverse shell. Secu…☆44Updated last year
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated last year
- Ivy is a payload creation framework for the execution of arbitrary VBA (macro) source code directly in memory. Ivy’s loader does this by …☆24Updated 2 years ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- Unhook Ntdll.dll, Go & C++.☆32Updated 7 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆98Updated 7 months ago
- Windows Thread Pool Injection Havoc Implementation☆32Updated last year
- Excel Add In Payload Generator☆13Updated 2 years ago
- Identifies LOLDrivers that are not blocked by the active HVCI policy — ideal for BYOVD scenarios.☆72Updated 4 months ago
- ☆61Updated last year
- Just another repository for malware development☆12Updated last year
- EvtPsst☆55Updated 2 years ago
- Red Team Operation's Defense Evasion Technique.☆56Updated last year
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆84Updated last year