Stealthy .NET assembly loading using AssemblyNative::LoadFromBuffer
☆58Mar 22, 2026Updated 5 months ago
Alternatives and similar repositories for CustomLoadImage
Users that are interested in CustomLoadImage are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- load shellcode without P/D Invoke and VirtualProtect call.☆170Sep 2, 2025Updated last year
- ☆68Jul 12, 2026Updated 2 months ago
- ASPX Web Shell with COFF Loader☆136Mar 10, 2026Updated 6 months ago
- A tool that helps change the recovery configuration of a Windows service to make lateral movement more stealthy☆44Feb 8, 2026Updated 7 months ago
- Conquest is a feature-rich and malleable command & control/post-exploitation framework developed in Nim.☆420Sep 3, 2026Updated 2 weeks ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 4 months ago
- A EDR bypassing shellcode loader framework for Windows 10 64bit, featuring ETW/AMSI patching, Tartarus Gate, process protection and more☆95Jun 24, 2026Updated 2 months ago
- Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)☆105Apr 4, 2026Updated 5 months ago
- modified mssqlclient from impacket to extract policies from the SCCM database☆49Feb 24, 2026Updated 6 months ago
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆51Jul 23, 2026Updated last month
- Arsenal of modules to beacon postex☆105Mar 13, 2026Updated 6 months ago
- A Windows x64 offensive research framework that constructs fully synthetic call stacks☆70Jul 14, 2026Updated 2 months ago
- Hides in your attic... I mean process☆26Apr 29, 2026Updated 4 months ago
- ☆88Feb 12, 2026Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Windows Session Hijacking via COM☆350Dec 13, 2025Updated 9 months ago
- Proof-of-Concept tool to dump trusted domain objects☆47May 14, 2026Updated 4 months ago
- Evasive loader for .NET Framework assemblies☆83May 12, 2026Updated 4 months ago
- Reflective DLL loader.☆26Jun 30, 2026Updated 2 months ago
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆114Jul 14, 2026Updated 2 months ago
- Fritter is a heavily modified fork of TheWover and Odzhan's Donut shellcode generator.☆253Aug 4, 2026Updated last month
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated 2 months ago
- COM Windows Persistence Technique☆89Apr 27, 2026Updated 4 months ago
- ☆193Oct 21, 2025Updated 10 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- AdaptixC2 default beacon agent extended to support Crystal Palace loaders.☆62May 4, 2026Updated 4 months ago
- Run native PE or .NET executables entirely in-memory. Build the loader as an .exe or .dll—DllMain is Cobalt Strike UDRL-compatible☆277Jun 18, 2025Updated last year
- FrontHunter is a tool for testing large lists of domains to identify candidates for domain fronting.☆22May 5, 2025Updated last year
- Evasive loader for .NET Framework assemblies☆51May 14, 2026Updated 4 months ago
- Lateral movement with DCOM DLL hijacking☆183Jul 4, 2025Updated last year
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆28Jul 23, 2026Updated last month
- ☆88Sep 3, 2026Updated 2 weeks ago
- Experimentations with the MSBuild Capabilites in a default environment.☆24Dec 6, 2025Updated 9 months ago
- Beacon Object File (BOF) for Using the BadSuccessor Technique for Account Takeover☆89Oct 20, 2025Updated 10 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆55Mar 30, 2026Updated 5 months ago
- Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. In C#, C++, Crystal, Python, Rust,…☆156Aug 31, 2026Updated 2 weeks ago
- One WSL BOF to rule them all☆189Jan 14, 2026Updated 8 months ago
- Havoc C2 BOF port of the KslD.sys BYOVD technique. Credential extraction from lsass via physical memory — no OpenProcess, no auditable AP…☆146Apr 22, 2026Updated 4 months ago
- Locate dlls and function addresses without PEB Walk and EAT parsing☆109Nov 7, 2025Updated 10 months ago
- Cobalt Strike BOF for beacon/shellcode injection using fork & run technique with Draugr synthetic stack frames☆156Nov 23, 2025Updated 9 months ago
- Advanced EDR Evasion via AI Telemetry Spoofing & WASM Sandboxing. Project Onyx is a PoC Red Team pipeline designed to demonstrate advance…☆117Updated this week