无Windows API的新型恶意程序:自缺陷程序利用堆栈溢出的隐匿稳定攻击技术研究,A new type of malicious program without Windows API
☆90Mar 27, 2025Updated last year
Alternatives and similar repositories for Self-Defective-Program
Users that are interested in Self-Defective-Program are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 添加计划任务方法集合☆315Aug 6, 2023Updated 3 years ago
- 重构Beacon☆166Aug 19, 2024Updated last year
- 使用Visral Studio开发ShellCode☆245Oct 11, 2023Updated 2 years ago
- AddDefenderExclusions Beacon Object File☆42Jun 25, 2023Updated 3 years ago
- A tool for automatic patch shellcode into binary file to bypass AV. / 一个自动patch shellcode到二进制文件的工具☆582Jul 19, 2026Updated 3 weeks ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- golang 实现的windows and linux 端口复用工具。☆311Jan 30, 2024Updated 2 years ago
- 一个demo☆24Apr 2, 2024Updated 2 years ago
- 免杀与恶意软件开发☆257Jan 4, 2026Updated 7 months ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆184Aug 3, 2024Updated 2 years ago
- Beacon compiled using clang☆72Jan 22, 2023Updated 3 years ago
- 自定义函数堆栈,从而绕过ETW检测,这个是完整版。☆15Apr 15, 2024Updated 2 years ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆165Oct 27, 2024Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆208May 28, 2024Updated 2 years ago
- Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThrea…☆1,324Jun 21, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- golang实现通过dcerpc和ntlmssp获取Windows远程主机信息☆29Apr 16, 2024Updated 2 years ago
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Dec 30, 2023Updated 2 years ago
- 主要用于隐藏进程真实路径,进程带windows真签名☆119Oct 15, 2024Updated last year
- 寻找可利用的白文件☆563Aug 18, 2025Updated 11 months ago
- An automated penetration testing information collection tool / 一款自动化渗透测试信息搜集类工具☆19Aug 16, 2023Updated 2 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆139Dec 26, 2023Updated 2 years ago
- Rust 重构的 sRDI☆18Sep 9, 2024Updated last year
- 一键提取exe的图标、嵌入图标、资源信息、版本信息、修改时间、数字签名,降低程序熵值☆435Dec 17, 2024Updated last year
- 关于RPC一些绕EDR的tips☆201Mar 3, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ebpf WebShell/内核马,一种新型内核马/WebShell技术☆353Jan 8, 2024Updated 2 years ago
- ☆247Sep 19, 2023Updated 2 years ago
- Personally developed tools for buffer overflow attacks☆23Sep 25, 2022Updated 3 years ago
- 基于 OPSEC 的 CobaltStrike 后渗透自动化链☆451Mar 11, 2024Updated 2 years ago
- Small & Fast Vulnerability Scanner Engine based on XRAY YAML Rule | 基于 XRAY YAML 规则的超轻量快速漏洞扫描引擎 | 基于 ANTLR 实现语法分析和完整的 XRAY YAML 规则实现 | 简单…☆180Jul 10, 2025Updated last year
- 本项目是一个远程控制应用,使用 Golang 开发,允许用户通过 Web 界面远程控制和屏幕监控其他计算机。主要功能包括屏幕共享、鼠标和键盘控制以及键盘记录。☆482Jan 30, 2026Updated 6 months ago
- 一个基于DNS隧道的简单C2☆60Jul 19, 2022Updated 4 years ago
- CobaltStrike beacon written in golang☆458Oct 13, 2023Updated 2 years ago
- 收集云沙箱上线C2的ip,如微X、奇XX、3X0、virustX等☆125Oct 23, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- EDR绕过demo☆292Jan 14, 2024Updated 2 years ago
- 针对PE文件的分离的攻防对抗工具,红队、研究者的好帮手。目前支持文件头伪装、证书区段感染。A no-kill confrontation tool for the separation of PE files, a good helper for red teams and…☆286Aug 20, 2024Updated last year
- Multilingual backdoor☆67May 9, 2024Updated 2 years ago
- CVE-2021-4034 for single commcand☆10May 31, 2022Updated 4 years ago
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆17Aug 14, 2023Updated 2 years ago
- OrcaC2是一款基于Websocket加密通信的多功能C&C框架,使用Golang实现。☆676Dec 30, 2022Updated 3 years ago
- A socksv5 proxy tool Written by CLang. 一款纯C实现的轻量内网穿透工具,支持正向,反向socks5代理隧道的搭建,支持跨平台使用。☆474Mar 2, 2025Updated last year