ariary / fileless-xec
Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)
☆195Updated 8 months ago
Alternatives and similar repositories for fileless-xec:
Users that are interested in fileless-xec are comparing it to the libraries listed below
- A C2 framework for initial access in Go☆177Updated 2 years ago
- Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.☆379Updated 2 years ago
- A BOF to automate common persistence tasks for red teamers☆273Updated 2 years ago
- indirect syscalls for AV/EDR evasion in Go assembly☆326Updated last year
- (Demo) 3rd party agent for Havoc☆134Updated last year
- Pass the Hash to a named pipe for token Impersonation☆301Updated last year
- WIP shellcode loader in nim with EDR evasion techniques☆210Updated 2 years ago
- Golang binary for data exfiltration with ICMP protocol (+ ICMP bindshell, http over ICMP tunneling, ...)☆146Updated 3 years ago
- KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this p…☆218Updated last year
- A little tool to play with the Seclogon service☆308Updated 2 years ago
- ☆243Updated 2 years ago
- A Nim implementation of reflective PE-Loading from memory☆275Updated 6 months ago
- A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!☆323Updated 8 months ago
- A Beacon Object File (BOF) is a compiled C program, written to a convention that allows it to execute within a Beacon process and use int…☆164Updated last week
- ☆167Updated 3 years ago
- grim reaper c2☆334Updated 2 years ago
- Collection of beacon BOF written to learn windows and cobaltstrike☆346Updated 2 years ago
- Post-exploit tool that enables a SOCKS tunnel via a Windows host using an extensible custom RPC proto over SMB through a named pipe.☆184Updated 4 years ago
- Execute shellcode from a remote-hosted bin file using Winhttp.☆231Updated last year
- Various Cobalt Strike BOFs☆619Updated 2 years ago
- Go shellcode loader that combines multiple evasion techniques☆363Updated last year
- A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.☆296Updated 2 years ago
- Get fresh Syscalls from a fresh ntdll.dll copy☆227Updated 3 years ago
- eXtensiable Malware Toolkit: Full Featured Golang C2 Framework with Awesome Features☆95Updated 6 months ago
- Python interpreter for Cobalt Strike Malleable C2 Profiles. Allows you to parse, build and modify them programmatically.☆276Updated 4 months ago
- Module Stomping, No New Thread, HellsGate syscaller, UUID Shellcode Runner for x64 Windows 10!☆440Updated 2 years ago
- Mythic C2 agent targeting Linux and Windows hosts written in Rust☆332Updated 3 months ago
- Process Ghosting Tool☆170Updated 3 years ago
- Extendable payload obfuscation and delivery framework☆141Updated 2 years ago
- Pure C++, weaponized, fully automated implementation of RottenPotatoNG☆300Updated 3 years ago