Tw1sm / SharpInjector
Flexible C# shellcode runner
☆37Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for SharpInjector
- Beacon Object File allowing creation of Beacons in different sessions.☆76Updated 2 years ago
- Halos Gate-based NTAPI Unhooker☆49Updated 2 years ago
- It stinks☆100Updated 2 years ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆95Updated last year
- A simple BOF that frees UDRLs☆109Updated 2 years ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆78Updated last year
- ☆51Updated last year
- TypeLib persistence technique☆75Updated last month
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆49Updated 2 years ago
- ☆76Updated last year
- Cobalt Strike beacon object file implementation for trusted path UAC bypass. The target executable will be called without involving "cmd.…☆118Updated 3 years ago
- A Cobalt Strike memory evasion loader for redteamers☆95Updated last year
- this repo is to cover the other undocumented or published / in different langaue to achieve shellcode injection via windows callback func…☆82Updated 2 years ago
- My implementation of Halo's Gate technique in C#☆53Updated 2 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆78Updated 3 years ago
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆113Updated last year
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆39Updated 10 months ago
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆72Updated last year
- Little program written in C# to bypass EDR hooks and dump the content of the lsass process☆60Updated 3 years ago
- ☆119Updated last year
- ☆122Updated 11 months ago
- I have documented all of the AMSI patches that I learned till now☆68Updated last year
- Modified versions of the Cobalt Strike Process Injection Kit☆88Updated 10 months ago
- Section Mapping Process Injection modified with SysWhisper2 (sw2-secinject): Cobalt Strike BOF☆41Updated 2 years ago
- Beacon Object Files (not Buffer Overflows)☆51Updated last year
- ☆44Updated 2 years ago
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆41Updated last year
- A faithful transposition of the key features/functionality of @itm4n's PPLDump project as a BOF.☆135Updated 3 years ago