TierZeroSecurity / killerPID-BOFLinks
BOF to terminate a process via PID as argument
☆27Updated 4 months ago
Alternatives and similar repositories for killerPID-BOF
Users that are interested in killerPID-BOF are comparing it to the libraries listed below
Sorting:
- ☆32Updated 11 months ago
- ☆29Updated last year
- A VSCode plugin to assist with BOF development.☆37Updated last year
- ☆52Updated 3 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆52Updated 2 years ago
- ☆50Updated 6 months ago
- BypassCredGuard CS BOF☆48Updated 11 months ago
- Using LNK files and user input simulation to start processes under explorer.exe☆32Updated last year
- A BOF that suspends non-GUI threads for a target process or resumes them resulting in stealthy process silencing.☆57Updated 8 months ago
- ☆51Updated 6 months ago
- Beacon Object Files (not Buffer Overflows)☆57Updated 2 years ago
- ☆33Updated 9 months ago
- ☆49Updated 7 months ago
- Creation and removal of Defender path exclusions and exceptions in C#.☆33Updated 2 years ago
- Less sugar (entropy) for your binaries☆34Updated 4 months ago
- Click Once + App Domain☆64Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that uses CredUIPromptForWindowsCredentials API to invoke credential prompt☆23Updated 3 years ago
- ☆46Updated last month
- SAM Dumping in C#☆54Updated last month
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆45Updated last year
- EmbedExeLnk by x86matthew modified by d4rkiZ☆42Updated 2 years ago
- An executable that simplifies adding the msds-AllowedToActOnBehalfOfOtherIdentity attribute for RBCD☆49Updated 10 months ago
- Porting of NPPSPY by Grzegorz Tworek to 'man in the middle' the user logon process, and store the user's name and password in an unassumi…☆19Updated 2 years ago
- Remote BOF Runner is a Havoc extension framework for remote execution of Beacon Object Files (BOFs) using a PIC loader made with Crystal …☆81Updated last week
- ☆38Updated 10 months ago
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆30Updated 11 months ago
- ☆100Updated last year
- DFSCoerce exe revisited version with custom authentication☆41Updated last year
- A simple PoC of injection shellcode into a remote process and get the output using namepipe☆44Updated last year
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆62Updated last year