Souhardya / CatharsisLinks
Raw syscall implementations with Powershell
☆29Updated 5 years ago
Alternatives and similar repositories for Catharsis
Users that are interested in Catharsis are comparing it to the libraries listed below
Sorting:
- Techniques that i have used to evade anti-virus during pen tests.☆13Updated 7 years ago
- Create a C++ PE which loads an XTEA-crypted .NET PE shellcode in memory.☆15Updated 6 years ago
- ☆14Updated 5 years ago
- DarkRats Standalone HVNC☆24Updated 3 years ago
- SharpSploit is a .NET post-exploitation library written in C#☆16Updated 5 years ago
- A CUSTOM CODED FUD DLL, CODED IN C , WHEN LOADED , VIA A DECOY WEB-DELIVERY MODULE( FIRING A DECOY PROGRAM), WILL GIVE A REVERSE SHELL (P…☆34Updated 6 years ago
- POC code to crash Windows Event Logger Service☆27Updated 4 years ago
- Dynamic and extensible shell code generator with multiple output types which can be formatted in binary, hexadecimal, and the typical she…☆19Updated 5 years ago
- medium-rare☆28Updated 5 years ago
- Disabling Windows Defender & downloading payload☆20Updated 4 years ago
- ☆45Updated 7 years ago
- Bind shell that uses Named Pipes as transport and execute PowerShell code through Runspaces.☆16Updated 5 years ago
- A simple injector that uses LoadLibraryA☆18Updated 5 years ago
- Rasta's mouse AMSI patch but with function that makes it undetectable.☆13Updated 4 years ago
- PoC code from blog☆16Updated 5 years ago
- ☆17Updated 6 years ago
- Python script to patch the reflective stub in a DLL☆24Updated 8 years ago
- A custom run space to bypass AMSI and Constrained Language mode in PowerShell.☆20Updated 2 years ago
- Data Exfiltration via HTTP Traffic (C# and Shell Script)☆18Updated 2 years ago
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Updated 6 years ago
- Antivirus Emulator Fingerprints☆29Updated 6 years ago
- Automate AV evasion by calling AMSI☆88Updated 2 years ago
- ☆41Updated 5 years ago
- C# AV bypass jank☆32Updated 4 years ago
- PoC: Prevent a debugger from attaching to managed .NET processes via a watcher process code pattern.☆32Updated 6 years ago
- Run Any Native PE file as a memory ONLY Payload , most likely as a shellcode using hta attack vector which interacts with Powershell.☆27Updated 8 years ago
- Multipurpose malware framework☆26Updated 3 years ago
- Windows 10 Exploit☆30Updated 6 years ago
- ☆25Updated 7 years ago
- Penetration Test / Read Team - C# tools repository☆57Updated 3 years ago