TunnelGRE / ProcessInjection-GO
Shellcode encryption in RC4 and process injection into explorer.exe.
☆37Updated last year
Alternatives and similar repositories for ProcessInjection-GO:
Users that are interested in ProcessInjection-GO are comparing it to the libraries listed below
- ☆77Updated last year
- ☆36Updated 2 years ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆101Updated 2 years ago
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆22Updated last year
- DLL Exports Extraction BOF with optional NTFS transactions.☆81Updated 3 years ago
- Sleep Obfuscation☆43Updated 2 years ago
- Titan: A generic user defined reflective DLL for Cobalt Strike☆75Updated 2 years ago
- Loading Fileless Remote PE from URI to memory with argument passing and ETW patching and NTDLL unhooking and No New Thread technique☆62Updated 2 years ago
- Use CMSTP.exe to bypass UAC.☆41Updated 2 years ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆62Updated last year
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆43Updated last year
- Winsocket for Cobalt Strike.☆97Updated last year
- A Cobalt Strike memory evasion loader for redteamers☆97Updated 2 years ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆27Updated 3 years ago
- NativePayload_PE1/PE2 , Injecting Meterpreter Payload bytes into local Process via Delegation Technique + in-memory with delay Changing R…☆58Updated last year
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated last year
- A small Aggressor script to help Red Teams identify foreign processes on a host machine☆83Updated 2 years ago
- Evasive loader to bypass static detection☆57Updated last year
- An attempt to make a LoadLibrary designed for offensive operations, in C# obviously.☆54Updated 3 years ago
- ☆53Updated last year
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆82Updated last year
- MSBuild AL bypass☆14Updated last year
- This is my own implementation of the Perun's Fart technique by Sektor7☆68Updated 2 years ago
- Parses Cobalt Strike malleable C2 profiles.☆51Updated this week
- Simple LSASS Dumper created using C++ as an alternative to using Mimikatz memory dumper☆53Updated 10 months ago
- CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)☆30Updated 3 years ago
- A collection of (even more) alternative shellcode callback methods in CSharp☆69Updated 4 months ago
- List/Read contents of Zip files (in memory and without extraction) using CobaltStrike's Execute-Assembly☆58Updated 2 years ago
- C# implementation of the research by @jonaslyk and the drafted PoC from @LloydLabs☆148Updated 3 years ago