brosck / L1LKillerLinks
「⚠️」Performing a BYOVD on the truesight.sys driver
☆44Updated last year
Alternatives and similar repositories for L1LKiller
Users that are interested in L1LKiller are comparing it to the libraries listed below
Sorting:
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆133Updated 11 months ago
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆92Updated last week
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆84Updated last year
- Generate an Alphabetical Polymorphic Shellcode☆131Updated 3 months ago
- Dynamic shellcode loader with sophisticated evasion capabilities☆264Updated 2 months ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆99Updated last year
- Remote DLL Injection with Timer-based Shellcode Execution☆151Updated 4 months ago
- DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism.☆98Updated 2 years ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- A Mythic agent for Windows written in C☆140Updated 3 weeks ago
- Stage 0☆167Updated 11 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆195Updated 10 months ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- Bypass user-land hooks by syscall tampering via the Trap Flag☆135Updated 3 months ago
- Classic Process Injection with Memory Evasion Techniques implemantation☆72Updated 2 years ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆66Updated last year
- Collection of red team techniques.☆63Updated 7 months ago
- Охотник (Hunter) is a simple Adversary Simulation tool developed for achieves stealth through API unhooking, direct and indirect syscalls…☆90Updated 7 months ago
- Shellcode loader☆96Updated last year
- Good CLR Host with Native patchless AMSI Bypass☆96Updated 7 months ago
- ☆146Updated last year
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆87Updated 9 months ago
- ☆53Updated last month
- ☆137Updated last month
- A small How-To on creating your own weaponized WSL file☆119Updated 4 months ago
- Modern PIC implant for Windows (64 & 32 bit)☆105Updated 4 months ago
- Create Anti-Copy DRM Malware☆70Updated last year
- Bypasses AMSI protection through remote memory patching and parsing technique.☆54Updated 6 months ago
- Convert your shellcode into an ASCII string☆125Updated 5 months ago
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆199Updated last month