ZeroMemoryEx / Bypass-Sandbox-Evasion
Bypass Malware Sandbox Evasion Ram check
☆137Updated 2 years ago
Alternatives and similar repositories for Bypass-Sandbox-Evasion:
Users that are interested in Bypass-Sandbox-Evasion are comparing it to the libraries listed below
- A proof of concept for abusing exception handlers to hook and bypass user mode EDR hooks.☆185Updated last year
- A Dropper POC with a focus on aiding in EDR evasion, NTDLL Unhooking followed by loading ntdll in-memory, which is present as shellcode (…☆170Updated 2 years ago
- CaveCarver - PE backdooring tool which utilizes and automates code cave technique☆224Updated 2 years ago
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated last year
- Execute shellcode files with rundll32☆199Updated last year
- Windows Kernel Offensive Toolset☆119Updated 7 months ago
- Run Your Payload Without Running Your Payload☆181Updated 2 years ago
- Generic PE loader for fast prototyping evasion techniques☆229Updated 9 months ago
- A Flask-based HTTP(S) command and control (C2) framework with a web interface. Custom Windows EXE/DLL implants written in C++. For educat…☆90Updated last year
- Evasive Golang Loader☆131Updated 8 months ago
- 「💀」Proof of concept on BYOVD attack☆157Updated 4 months ago
- random code snippets, useful for getting started☆120Updated 5 months ago
- Create Anti-Copy DRM Malware☆55Updated 7 months ago
- PE obfuscator with Evasion in mind☆213Updated last year
- Documents Exfiltration project for fun and educational purposes☆145Updated last year
- Another approach of Threadless injection discovered by @_EthicalChaos_ in c that loads a module into the target process and stomps it, an…☆177Updated last year
- This repository implements Threadless Injection in C☆165Updated last year
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆90Updated 10 months ago
- A Powershell AMSI Bypass technique via Vectored Exception Handler (VEH). This technique does not perform assembly instruction patching, f…☆160Updated 10 months ago
- Github as C2 Demonstration , free API = free C2 Infrastructure☆136Updated last year
- Reflective DLL Injection Made Bella☆225Updated 3 months ago
- Implementing the ghostly hollowing PE injection technique using tampered syscalls.☆144Updated last month
- Patching AmsiOpenSession by forcing an error branching☆145Updated last year
- ApexLdr is a DLL Payload Loader written in C☆108Updated 9 months ago
- Hiding shellcode in plain sight within a large memory region. Inspired by technique used by Raspberry Robin's Roshtyak☆204Updated 2 years ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆148Updated last year
- Remote Shellcode Injector☆213Updated last year
- 🐍 Double Venom (DVenom) is a tool that provides an encryption wrapper and loader for your shellcode.☆157Updated last year
- Null-AMSI is an AMSI and ETW bypass that takes advantage of .NET types (.NET Reflection) to bypassing AV/EDR.☆50Updated last week
- (0day) Local Privilege Escalation in IObit Malware Fighter☆127Updated 2 weeks ago