andrecrafts / hide-payload-in-imagesLinks
A project that demonstrates embedding shellcode payloads into image files (like PNGs) using Python and extracting them using C/C++. Payloads can be retrieved directly from the file on disk or from the image stored in a binary's resources section (.rsrc)
☆212Updated 2 months ago
Alternatives and similar repositories for hide-payload-in-images
Users that are interested in hide-payload-in-images are comparing it to the libraries listed below
Sorting:
- Embed a payload inside a PNG file☆361Updated last year
- EDR & Antivirus Bypass to Gain Shell Access☆246Updated last year
- PowerShell Obfuscator☆225Updated 4 months ago
- Venom C2 is a dependency‑free Python3 Command & Control framework for redteam persistence☆409Updated last month
- PDF dropper Red Team Scenairos☆227Updated last year
- BrowserSnatch is a powerful browser stealer or browser data extraction tool intended to be used for ethical hacking or penetration testin…☆290Updated last month
- Extract data from modern Chrome versions, including refresh tokens, cookies, saved credentials, autofill data, browsing history, and book…☆119Updated last week
- A script to generate AV evaded(static) DLL shellcode loader with AES encryption.☆138Updated 9 months ago
- PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges requir…☆154Updated last year
- RunPE implementation with multiple evasive techniques☆262Updated 3 months ago
- Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.☆260Updated 7 months ago
- Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-nat…☆258Updated 8 months ago
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆353Updated 4 months ago
- This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.☆153Updated 9 months ago
- ShadowPhish is an advanced APT awareness toolkit designed to simulate real-world phishing, malware delivery, deepfakes, smishing/vishing,…☆217Updated 8 months ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆315Updated 3 months ago
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆395Updated 3 months ago
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆415Updated this week
- This comprehensive process injection series is crafted for cybersecurity enthusiasts, researchers, and professionals who aim to stay at t…☆423Updated 7 months ago
- SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connecti…☆414Updated last month
- Extract and execute a PE embedded within a PNG file using an LNK file.☆462Updated last year
- ☆164Updated 9 months ago
- ☆376Updated 2 months ago
- Deploy reverse shells and perform stealthy process injection with EchoStrike – a Go-based tool for ethical hacking and Red Team operation…☆189Updated last year
- Bear C2 is a compilation of C2 scripts, payloads, and stagers used in simulated attacks by Russian APT groups, Bear features a variety of…☆463Updated 4 months ago
- Python3 utility for creating zip files that smuggle additional data for later extraction☆262Updated 7 months ago
- C# AV/EDR Killer using less-known driver (BYOVD)☆181Updated 2 years ago
- Inject DLLs into the explorer process using icons☆397Updated 7 months ago
- Cross platform (Linux / Windows) shellcode packer for CTFs and pentest / red team exams aiming for AV evasion !☆97Updated 3 weeks ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆269Updated last year