andrecrafts / hide-payload-in-imagesLinks
A project that demonstrates embedding shellcode payloads into image files (like PNGs) using Python and extracting them using C/C++. Payloads can be retrieved directly from the file on disk or from the image stored in a binary's resources section (.rsrc)
☆186Updated 5 months ago
Alternatives and similar repositories for hide-payload-in-images
Users that are interested in hide-payload-in-images are comparing it to the libraries listed below
Sorting:
- Embed a payload inside a PNG file☆334Updated 9 months ago
- PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges requir…☆149Updated last year
- C# AV/EDR Killer using less-known driver (BYOVD)☆180Updated last year
- Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.☆213Updated 3 months ago
- EDR & Antivirus Bypass to Gain Shell Access☆245Updated 10 months ago
- PowerShell Obfuscator☆183Updated last year
- Evasive shellcode loader☆378Updated 9 months ago
- ☆160Updated 5 months ago
- A script to generate AV evaded(static) DLL shellcode loader with AES encryption.☆133Updated 4 months ago
- A guide to learning antivirus evasion☆39Updated 4 months ago
- Proof of Concept (PoC) .NET tool for remotely killing EDR with WDAC☆373Updated 7 months ago
- This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.☆137Updated 5 months ago
- ShadowPhish is an advanced APT awareness toolkit designed to simulate real-world phishing, malware delivery, deepfakes, smishing/vishing,…☆196Updated 3 months ago
- Extract and execute a PE embedded within a PNG file using an LNK file.☆435Updated 9 months ago
- PDF dropper Red Team Scenairos☆216Updated last year
- A powerful, modular, lightweight and efficient command & control framework written in Nim.☆190Updated last month
- This comprehensive process injection series is crafted for cybersecurity enthusiasts, researchers, and professionals who aim to stay at t…☆399Updated 2 months ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆292Updated 4 months ago
- Evade EDR's the simple way, by not touching any of the API's they hook.☆150Updated 6 months ago
- BrowserSnatch is a powerful browser stealer or browser data extraction tool intended to be used for ethical hacking or penetration testin…☆271Updated 4 months ago
- Cross platform (Linux / Windows) shellcode packer for CTFs and pentest / red team exams aiming for AV evasion !☆71Updated last month
- Python3 utility for creating zip files that smuggle additional data for later extraction☆250Updated 2 months ago
- Null-AMSI is an AMSI and ETW bypass that takes advantage of .NET types (.NET Reflection) to bypassing AV/EDR.☆71Updated last month
- Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-nat…☆228Updated 3 months ago
- yet another AV killer tool using BYOVD☆293Updated last year
- Deploy reverse shells and perform stealthy process injection with EchoStrike – a Go-based tool for ethical hacking and Red Team operation…☆185Updated 11 months ago
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆195Updated 5 months ago
- Python implementation of GhostPack's Seatbelt situational awareness tool☆262Updated 8 months ago
- This comprehensive and central repository is designed for cybersecurity enthusiasts, researchers, and professionals seeking to stay ahead…☆125Updated 2 months ago
- AV/EDR Lab environment setup references to help in Malware development☆397Updated 5 months ago