andrecrafts / hide-payload-in-imagesLinks
A project that demonstrates embedding shellcode payloads into image files (like PNGs) using Python and extracting them using C/C++. Payloads can be retrieved directly from the file on disk or from the image stored in a binary's resources section (.rsrc)
☆200Updated 3 weeks ago
Alternatives and similar repositories for hide-payload-in-images
Users that are interested in hide-payload-in-images are comparing it to the libraries listed below
Sorting:
- Embed a payload inside a PNG file☆353Updated last year
- EDR & Antivirus Bypass to Gain Shell Access☆246Updated last year
- PowerShell Obfuscator☆211Updated 2 months ago
- PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges requir…☆154Updated last year
- PDF dropper Red Team Scenairos☆224Updated last year
- Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.☆247Updated 5 months ago
- ☆338Updated 2 weeks ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆306Updated last month
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆338Updated 2 months ago
- Python3 utility for creating zip files that smuggle additional data for later extraction☆260Updated 5 months ago
- ShadowPhish is an advanced APT awareness toolkit designed to simulate real-world phishing, malware delivery, deepfakes, smishing/vishing,…☆211Updated 6 months ago
- Cross platform (Linux / Windows) shellcode packer for CTFs and pentest / red team exams aiming for AV evasion !☆85Updated 2 months ago
- A guide to learning antivirus evasion☆55Updated 7 months ago
- Enhance Your Active Directory Password Spraying with User Intelligence.☆295Updated 2 months ago
- The dragon in the dark. A red team post exploitation framework for testing security controls during red team assessments.☆254Updated last week
- Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-nat…☆250Updated 6 months ago
- Deploy reverse shells and perform stealthy process injection with EchoStrike – a Go-based tool for ethical hacking and Red Team operation…☆188Updated last year
- C# AV/EDR Killer using less-known driver (BYOVD)☆180Updated last year
- BrowserSnatch is a powerful browser stealer or browser data extraction tool intended to be used for ethical hacking or penetration testin…☆281Updated 7 months ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆266Updated 11 months ago
- yet another AV killer tool using BYOVD☆297Updated last year
- Execute commands interactively on remote Windows machines using the WinRM protocol☆263Updated last week
- Bear C2 is a compilation of C2 scripts, payloads, and stagers used in simulated attacks by Russian APT groups, Bear features a variety of…☆429Updated 2 months ago
- NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.☆169Updated last week
- Extract and execute a PE embedded within a PNG file using an LNK file.☆452Updated 11 months ago
- Continuous password spraying tool☆193Updated last month
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆386Updated last month
- Evade EDR's the simple way, by not touching any of the API's they hook.☆161Updated 9 months ago
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆203Updated 7 months ago
- The different ways to dump lsass☆193Updated 2 months ago