arget13 / DDexec
A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.
☆839Updated last month
Alternatives and similar repositories for DDexec:
Users that are interested in DDexec are comparing it to the libraries listed below
- Execute ELF files without dropping them on disk☆491Updated 10 months ago
- Open-Source Shellcode & PE Packer☆1,945Updated last year
- Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)☆1,306Updated 2 months ago
- Red-Team Linux kernel rootkit☆364Updated 2 weeks ago
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,176Updated last year
- Windows Privilege Escalation from User to Domain Admin.☆1,387Updated 2 years ago
- Statically-linked ssh server with reverse shell functionality for CTFs and such☆963Updated 2 years ago
- A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.☆1,958Updated last month
- Shikata ga nai (仕方がない) encoder ported into go with several improvements☆1,690Updated last year
- A small reverse shell for Linux & Windows☆599Updated 11 months ago
- A tool to kill antimalware protected processes☆1,441Updated 3 years ago
- ☆1,643Updated 8 months ago
- Syscall Shellcode Loader (Work in Progress)☆1,190Updated last year
- Linux PAM Backdoor☆328Updated last year
- a tool to help operate in EDRs' blind spots☆730Updated 5 months ago
- A light-weight first-stage C2 implant written in Nim (and Rust).☆876Updated last month
- Automatic privilege escalation for misconfigured capabilities, sudo and suid binaries using GTFOBins.☆569Updated 6 months ago
- Sudo Baron Samedit Exploit☆746Updated 3 years ago
- Another Windows Local Privilege Escalation from Service Account to System☆1,082Updated 4 years ago
- Penelope Shell Handler☆916Updated last month
- The swiss army knife of LSASS dumping☆1,923Updated 7 months ago
- Windows Local Privilege Escalation from Service Account to System☆797Updated 5 years ago
- Collection of PoC and offensive techniques used by the BlackArrow Red Team☆1,116Updated 9 months ago
- ☆2,098Updated 2 years ago
- ☆1,948Updated last year
- This repo contains C/C++ snippets that can be handy in specific offensive scenarios.☆703Updated 3 months ago
- exploit for CVE-2022-2588☆483Updated 2 years ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆1,440Updated last year
- A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.☆1,842Updated last year
- A collection of statically compiled tools like Nmap and Socat.☆439Updated last year