ariary / fileless-xecLinks
Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)
☆203Updated last year
Alternatives and similar repositories for fileless-xec
Users that are interested in fileless-xec are comparing it to the libraries listed below
Sorting:
- Golang binary for data exfiltration with ICMP protocol (+ ICMP bindshell, http over ICMP tunneling, ...)☆163Updated 3 years ago
- WIP shellcode loader in nim with EDR evasion techniques☆220Updated 3 years ago
- KittyStager is a simple stage 0 C2. It is made of a web server to host the shellcode and an implant, called kitten. The purpose of this p…☆223Updated 2 years ago
- eXtensiable Malware Toolkit: Full Featured Golang C2 Framework with Awesome Features☆100Updated last month
- A C2 framework for initial access in Go☆194Updated 3 years ago
- indirect syscalls for AV/EDR evasion in Go assembly☆337Updated 2 years ago
- A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!☆336Updated last year
- Get fresh Syscalls from a fresh ntdll.dll copy☆233Updated 3 years ago
- A BOF to automate common persistence tasks for red teamers☆288Updated 2 years ago
- grim reaper c2☆340Updated 2 years ago
- Extendable payload obfuscation and delivery framework☆146Updated 2 years ago
- A technique of hiding malicious shellcode via Shannon encoding.☆258Updated 2 years ago
- Post-exploitation agent for Merlin☆201Updated 4 months ago
- A Nim implementation of reflective PE-Loading from memory☆292Updated last year
- (Demo) 3rd party agent for Havoc☆142Updated 2 years ago
- Go shellcode loader that combines multiple evasion techniques☆380Updated 2 years ago
- ☆248Updated 2 years ago
- Convert shellcode into different formats!☆358Updated 2 years ago
- ☆170Updated 4 years ago
- Process Ghosting Tool☆174Updated 4 years ago
- Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC☆178Updated 3 years ago
- The Official Sliver Armory☆115Updated 4 months ago
- ☆209Updated 4 months ago
- A PoC that combines AutodialDLL lateral movement technique and SSP to scrape NTLM hashes from LSASS process.☆300Updated 2 years ago
- Pure C++, weaponized, fully automated implementation of RottenPotatoNG☆311Updated 3 years ago
- Medusa is a cross-platform C2 agent compatible with Python 2.7 and 3.8, compatible with Mythic☆188Updated last month
- Automated compiler obfuscation for nim☆140Updated 3 years ago
- Pass the Hash to a named pipe for token Impersonation☆306Updated last year
- Golang PE injection on windows☆168Updated 4 years ago
- Cobalt Strike External C2 Integration With Azure Servicebus, C2 traffic via Azure Servicebus☆232Updated 3 years ago