64bit Windows 10 shellcode that injects all processes with Meterpreter reverse shells.
☆131Mar 8, 2023Updated 3 years ago
Alternatives and similar repositories for winx64-InjectAllProcessesMeterpreter-Shellcode
Users that are interested in winx64-InjectAllProcessesMeterpreter-Shellcode are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 64bit Windows 10 shellcode that adds user BOKU:SP3C1ALM0V3 to the system and the localgroups Administrators & "Remote Desktop Users"☆38May 3, 2021Updated 5 years ago
- EarlyBird process hollowing technique (BOF) - Spawns a process in a suspended state, inject shellcode, hijack main thread with APC, and e…☆290Mar 8, 2023Updated 3 years ago
- A recreation of the "Nobelium" malware based on Microsofts Malware analysis - Part 1: PDF2Pwn☆99Mar 8, 2023Updated 3 years ago
- Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.☆381Mar 8, 2023Updated 3 years ago
- Assembly HellGate implementation that directly calls Windows System Calls and displays the PPID of the explorer.exe process☆107Mar 8, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Weaponising C# - Fundamentals Training Content☆70May 11, 2021Updated 5 years ago
- Get-PDInvokeImports is tool (PowerShell module) which is able to perform automatic detection of P/Invoke, Dynamic P/Invoke and D/Invoke u…☆54Apr 10, 2022Updated 4 years ago
- ☆29Aug 24, 2025Updated 10 months ago
- Detect and respond to Cobalt Strike beacons using ETW.☆516Jul 15, 2022Updated 4 years ago
- POC for frustrating/defeating Malware Analysts☆154Jun 12, 2022Updated 4 years ago
- Pinjectra is a C/C++ OOP-like library that implements Process Injection techniques (with focus on Windows 10 64-bit)☆16Sep 4, 2020Updated 5 years ago
- Simple EDR implementation to demonstrate bypass☆183May 27, 2020Updated 6 years ago
- Project Ares is a Proof of Concept (PoC) loader written in C/C++ based on the Transacted Hollowing technique☆336Jan 16, 2022Updated 4 years ago
- CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)☆300Sep 28, 2021Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- A tool to kill antimalware protected processes☆1,521Jun 19, 2021Updated 5 years ago
- Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes☆109Mar 8, 2023Updated 3 years ago
- ☆18Mar 20, 2017Updated 9 years ago
- Evasive Process Hollowing Techniques☆143Aug 16, 2020Updated 5 years ago
- Executes position independent shellcode from an encrypted zip☆304Dec 22, 2020Updated 5 years ago
- A Post exploitation tool written in C# uses either CIM or WMI to query remote systems.☆199Sep 21, 2021Updated 4 years ago
- Reflected Cross-Site Scripting (XSS) vulnerability in 'index.php' login-portal webpage of SourceCodesters Tailor Management System v1.0 a…☆25Sep 2, 2020Updated 5 years ago
- Cobalt Strike beacon object file implementation for trusted path UAC bypass. The target executable will be called without involving "cmd.…☆144Aug 16, 2021Updated 4 years ago
- Evasive shellcode loader for bypassing event-based injection detection (PoC)☆837Aug 23, 2021Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- It stinks☆101Apr 22, 2022Updated 4 years ago
- Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted fi…☆694Mar 11, 2024Updated 2 years ago
- implementation of some concepts in Security and Exploiting☆13Aug 24, 2015Updated 10 years ago
- ☆15Feb 9, 2022Updated 4 years ago
- Small and convenient C2 tool for Windows targets☆618Mar 8, 2022Updated 4 years ago
- ☆786Oct 17, 2023Updated 2 years ago
- Experiment on reproducing Obfuscate & Sleep☆165Mar 14, 2021Updated 5 years ago
- A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!☆1,427Nov 22, 2023Updated 2 years ago
- SharpHook is an offensive API hooking tool designed to catch various credentials within the API call.☆321Jul 1, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ScareCrow - Payload creation framework designed around EDR bypass.☆2,890Aug 18, 2023Updated 2 years ago
- OffensivePH - use old Process Hacker driver to bypass several user-mode access controls☆333Oct 9, 2021Updated 4 years ago
- Exploit allowing you to read registry hives as non-admin on Windows 10 and 11☆835Jul 26, 2021Updated 4 years ago
- CSharp Writeups for HackSys Extreme Vulnerable Driver☆44Dec 22, 2021Updated 4 years ago
- SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.☆1,216Apr 16, 2025Updated last year
- Module Stomping, No New Thread, HellsGate syscaller, UUID Shellcode Runner for x64 Windows 10!☆450Mar 8, 2023Updated 3 years ago
- Various shellcodes☆12Sep 1, 2020Updated 5 years ago