Z3ratu1 / geacon_plus
CobaltStrike beacon written in golang
☆390Updated last year
Related projects ⓘ
Alternatives and complementary repositories for geacon_plus
- CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some inte…☆208Updated last year
- Some demos to bypass EDRs or AVs by 78itsT3@m☆344Updated 2 years ago
- CVE-2022-39197 漏洞补丁. CVE-2022-39197 Vulnerability Patch.☆313Updated 2 years ago
- CobaltStrike <= 4.7.1 RCE☆377Updated 2 years ago
- Loading BOF & ShellCode without executable permission memory.☆345Updated 2 weeks ago
- CobaltStrike资源大全☆291Updated last year
- GetProcAddressByHash/remap/full dll unhooking/Tartaru's Gate/Spoofing Gate/universal/Perun's Fart/Spoofing-Gate/EGG/RecycledGate/syswhisp…☆300Updated last month
- dump lsass进程工具☆544Updated last year
- 重构了Cobaltstrike Beacon,行为对国内主流杀软免杀,支持4.1以上的版本。 A cobaltstrike Beacon bypass anti-virus, supports 4.1+ version.☆268Updated 2 years ago
- C2-下一代RAT☆309Updated 2 months ago
- 免杀学习笔记☆212Updated last year
- Syscall免杀☆502Updated 4 months ago
- 通过反射DLL注入、Win API、C#、以及底层实 现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆330Updated 2 years ago
- 使用多种WinAPI进行权限维持的CobaltStrike脚本,包含API设置系统服务,设置计划任务,管理用户等。☆519Updated 2 years ago
- WPS Office RCE On 2023-08-10☆249Updated last year
- EDR绕过demo☆286Updated 9 months ago
- 免杀,bypassav,免杀框架,nim,shellcode,使用nim编写的shellcode加载器☆618Updated 10 months ago
- Modifying JuicyPotato to support load shellcode and webshell☆185Updated 3 years ago
- 将dll exe 等转成shellcode 最后输出exe 可定制加载器模板 支持白文件的捆绑 shellcode 加密☆358Updated 2 years ago
- 红队 C2 框架,使用 No X Loader 技术。Red Team C2 Framework, using No X Loader technology.☆277Updated last month
- 域信息收集工具☆383Updated 2 years ago
- Some Service DCOM Object and SeImpersonatePrivilege abuse.☆350Updated last year
- Msmap is a Memory WebShell Generator.☆557Updated last year
- EXE转ShellCode工具☆170Updated 2 years ago
- 远程shellcode加载&权限维持+小功能☆291Updated 6 months ago
- Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-softw…☆280Updated last year