andrecrafts / hide-payload-in-imagesLinks
A project that demonstrates embedding shellcode payloads into image files (like PNGs) using Python and extracting them using C/C++. Payloads can be retrieved directly from the file on disk or from the image stored in a binary's resources section (.rsrc)
☆179Updated 4 months ago
Alternatives and similar repositories for hide-payload-in-images
Users that are interested in hide-payload-in-images are comparing it to the libraries listed below
Sorting:
- Embed a payload inside a PNG file☆328Updated 8 months ago
- PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges requir…☆149Updated last year
- ☆157Updated 4 months ago
- ShadowPhish is an advanced APT awareness toolkit designed to simulate real-world phishing, malware delivery, deepfakes, smishing/vishing,…☆191Updated 3 months ago
- Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.☆205Updated 2 months ago
- C# AV/EDR Killer using less-known driver (BYOVD)☆178Updated last year
- Python3 utility for creating zip files that smuggle additional data for later extraction☆244Updated 2 months ago
- PowerShell Obfuscator☆179Updated last year
- A script to generate AV evaded(static) DLL shellcode loader with AES encryption.☆130Updated 3 months ago
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆194Updated 4 months ago
- A powerful, modular, lightweight and efficient command & control framework written in Nim.☆183Updated 2 weeks ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆290Updated 3 months ago
- BrowserSnatch is a powerful browser stealer or browser data extraction tool intended to be used for ethical hacking or penetration testin…☆270Updated 3 months ago
- yet another AV killer tool using BYOVD☆292Updated last year
- I will be uploading all the codes which I created with the help either opensource projects or blogs. This is a step by step EDR learning …☆278Updated last month
- EDR & Antivirus Bypass to Gain Shell Access☆246Updated 9 months ago
- This comprehensive process injection series is crafted for cybersecurity enthusiasts, researchers, and professionals who aim to stay at t…☆391Updated last month
- This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.☆137Updated 4 months ago
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆158Updated 3 weeks ago
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆153Updated last year
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆362Updated 6 months ago
- Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-nat…☆211Updated 3 months ago
- Extract and execute a PE embedded within a PNG file using an LNK file.☆424Updated 8 months ago
- Deploy reverse shells and perform stealthy process injection with EchoStrike – a Go-based tool for ethical hacking and Red Team operation…☆182Updated 10 months ago
- PDF dropper Red Team Scenairos☆214Updated 11 months ago
- Evasive shellcode loader☆375Updated 9 months ago
- CIA UAC bypass implementation of Stinger that obtains the token from an auto-elevated process, modifies it, and reuses it to execute as A…☆294Updated last year
- RDPCredentialStealer it's a malware that steal credentials provided by users in RDP using API Hooking with Detours in C++☆249Updated 2 years ago
- AV/EDR Lab environment setup references to help in Malware development☆392Updated 5 months ago
- This comprehensive and central repository is designed for cybersecurity enthusiasts, researchers, and professionals seeking to stay ahead…☆123Updated last month