brosck / L1LKillerLinks
「⚠️」Performing a BYOVD on the truesight.sys driver
☆44Updated last year
Alternatives and similar repositories for L1LKiller
Users that are interested in L1LKiller are comparing it to the libraries listed below
Sorting:
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆133Updated last year
- Remote DLL Injection with Timer-based Shellcode Execution☆152Updated 5 months ago
- DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.☆100Updated 2 years ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆100Updated last year
- Generate an Alphabetical Polymorphic Shellcode☆133Updated 4 months ago
- Collection of red team techniques.☆64Updated 8 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆195Updated 10 months ago
- Bypass the Event Trace Windows(ETW) and unhook ntdll.☆115Updated 2 years ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆95Updated 3 weeks ago
- Dynamic shellcode loader with sophisticated evasion capabilities☆274Updated 2 months ago
- Automatically scan the file system to identify Electron applications vulnerable to ASAR tampering.☆141Updated last month
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆176Updated last month
- Stage 0☆168Updated last year
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆102Updated 9 months ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- Convert your shellcode into an ASCII string☆125Updated 6 months ago
- A Mythic agent for Windows written in C☆142Updated this week
- C++ Staged Shellcode Loader with Evasion capabilities.☆99Updated last year
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆83Updated last year
- Create Anti-Copy DRM Malware☆69Updated last year
- Classic Process Injection with Memory Evasion Techniques implemantation☆72Updated 2 years ago
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆126Updated last year
- Bypass user-land hooks by syscall tampering via the Trap Flag☆136Updated 4 months ago
- PowerShell script to generate ShellCode in various formats☆46Updated last year
- Windows Thread Pool Injection Havoc Implementation☆33Updated last year
- Indirect Syscall with TartarusGate Approach in Go☆130Updated 5 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆61Updated 7 months ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆88Updated 9 months ago
- AppLocker-Based EDR Neutralization☆100Updated last week