☆721Mar 22, 2024Updated 2 years ago
Alternatives and similar repositories for Home-Grown-Red-Team
Users that are interested in Home-Grown-Red-Team are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techni…☆1,406Oct 27, 2023Updated 2 years ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆1,476Aug 18, 2023Updated 2 years ago
- Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework☆390Jul 30, 2024Updated last year
- Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird …☆803Jan 26, 2026Updated 6 months ago
- Syscall Shellcode Loader (Work in Progress)☆1,275May 8, 2024Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- PoC module to demonstrate automated lateral movement with the Havoc C2 framework.☆314Dec 9, 2023Updated 2 years ago
- SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.☆1,218Apr 16, 2025Updated last year
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,200Oct 16, 2023Updated 2 years ago
- Template-Driven AV/EDR Evasion Framework☆1,810Nov 3, 2023Updated 2 years ago
- Materials for the workshop "Red Team Ops: Havoc 101"☆399Oct 6, 2024Updated last year
- Automated DLL Sideloading Tool With EDR Evasion Capabilities☆507Dec 19, 2023Updated 2 years ago
- Threadless Process Injection using remote function hooking.☆825Sep 4, 2024Updated last year
- A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.☆632Jan 2, 2025Updated last year
- Remote operations commands implemented using Beacon Object Files☆1,174Jul 20, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Shellcode encryptor & obfuscator tool☆1,032Jul 21, 2026Updated last week
- This map lists the essential techniques to bypass anti-virus and EDR☆3,368Mar 28, 2025Updated last year
- ☆322Jun 28, 2023Updated 3 years ago
- A beacon object file implementation of PoolParty Process Injection Technique.☆457Dec 21, 2023Updated 2 years ago
- A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file form…☆1,194Jun 10, 2024Updated 2 years ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆707Jul 16, 2026Updated last week
- Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts wa…☆1,095Oct 14, 2025Updated 9 months ago
- Spartacus DLL/COM Hijacking Toolkit☆1,084Feb 1, 2024Updated 2 years ago
- Patch AMSI and ETW☆251May 8, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A modern 32/64-bit position independent implant template☆1,355Jun 1, 2026Updated last month
- DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the …☆574Jun 5, 2023Updated 3 years ago
- A C# Command & Control framework☆1,025Mar 28, 2024Updated 2 years ago
- Analyse your malware to surgically obfuscate it☆541Jun 27, 2026Updated last month
- Performing Indirect Clean Syscalls☆617May 2, 2026Updated 2 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆1,029Jun 4, 2024Updated 2 years ago
- ScareCrow - Payload creation framework designed around EDR bypass.☆2,890Aug 18, 2023Updated 2 years ago
- Loading Remote AES Encrypted PE in memory , Decrypted it and run it☆1,035Aug 29, 2023Updated 2 years ago
- a tool to help operate in EDRs' blind spots☆772Dec 2, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Lifetime AMSI bypass☆680Sep 26, 2023Updated 2 years ago
- The swiss army knife of LSASS dumping☆2,129Sep 17, 2024Updated last year
- .net config loader☆355Nov 9, 2023Updated 2 years ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆722Mar 4, 2023Updated 3 years ago
- kill anti-malware protected processes ( BYOVD )☆982Jul 21, 2023Updated 3 years ago
- A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!☆1,428Nov 22, 2023Updated 2 years ago
- Situational Awareness commands implemented using Beacon Object Files☆1,848Updated this week