aahmad097 / Test004
Persistence via Shell Extensions
☆64Updated last year
Alternatives and similar repositories for Test004:
Users that are interested in Test004 are comparing it to the libraries listed below
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆98Updated last year
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆41Updated last year
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆36Updated last year
- A method to execute shellcode using RegisterWaitForInputIdle API.☆52Updated last year
- A (quite) simple steganography algorithm to hide shellcodes within bitmap image.☆21Updated 8 months ago
- Execute dotnet app from unmanaged process☆68Updated last month
- Beacon Debugger☆39Updated 3 months ago
- Sliver agent rewritten in C++☆43Updated 4 months ago
- A work in progress BOF/COFF loader in Rust☆46Updated last year
- ☆62Updated 11 months ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆60Updated last year
- ☆36Updated last year
- ☆43Updated last year
- Sleep Obfuscation☆43Updated 2 years ago
- Artemis - C++ Hell's Gate Syscall Implementation☆31Updated last year
- An attempt to make a LoadLibrary designed for offensive operations, in C# obviously.☆54Updated 2 years ago
- A simple PoC of injection shellcode into a remote process and get the output using namepipe☆42Updated last year
- I have documented all of the AMSI patches that I learned till now☆69Updated last year
- Reimplementation of the KExecDD DSE bypass technique.☆45Updated 4 months ago
- This is my own implementation of the Perun's Fart technique by Sektor7☆68Updated 2 years ago
- A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and re…☆21Updated last year
- ☆39Updated 2 years ago
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆50Updated 2 years ago
- lsassdump via RtlCreateProcessReflection and NanoDump☆77Updated 3 months ago
- stack spoofing☆77Updated 2 months ago
- Repo that holds random POCs☆48Updated last year
- Exploiting the KsecDD Windows driver through Server Silos☆38Updated 2 months ago
- ☆59Updated 2 years ago
- BYOVD collection☆21Updated 10 months ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year