captain-woof / malware-study
My projects to understand malware development and detection. Use responsibly. I'm not responsible if you cause unauthorised damage to anyone's system.
☆12Updated last month
Related projects ⓘ
Alternatives and complementary repositories for malware-study
- Small project to facilitate creation of .lnk payloads☆62Updated 2 years ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆79Updated 4 months ago
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆88Updated last year
- Lifetime AMSI bypass.☆36Updated 4 months ago
- a port of privkit bof for havoc☆22Updated 11 months ago
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated last year
- A repo of scripts I find helpful for daily tasks.☆26Updated 6 months ago
- Brief writeup of post exploitation methodologies.☆17Updated last year
- C2 Infrastructure Automation☆86Updated last week
- PowerShell Reverse Shell☆61Updated last year
- ☆51Updated 9 months ago
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆106Updated 6 months ago
- Lateral Movement☆119Updated last year
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆30Updated 5 months ago
- Info related to the Outflank training: Microsoft Office Offensive Tradecraft☆51Updated 6 months ago
- C# implementation of TokenFinder. Steal M365 access tokens from Office Desktop apps☆133Updated 4 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆39Updated 4 months ago
- Inject RDPThief into memory with PowerShell.☆55Updated last month
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆45Updated 8 months ago
- Shellcode generation and encoding utility☆21Updated 2 years ago
- Example code samples from our ScriptBlock Smuggling Blog post☆83Updated 5 months ago
- ☆26Updated 2 months ago
- ☆126Updated 3 months ago
- Evade EDR's the simple way, by not touching any of the API's they hook.☆53Updated 3 months ago
- A web assembly (WASM) phishing lure generator based on pre-built templates and written in Rust with some GenAI assistance. W.A.L.K. aims …☆59Updated 2 months ago
- A C2 framework built for my bachelors thesis☆53Updated 3 weeks ago
- Impacket pre-compiled binaries☆14Updated last year
- Resources linked to my presentation at OffensiveX in Athens in June 2024 on the topic "Breach the Gat, Advanced Initial Access in 2024"☆123Updated 3 months ago
- D/Invoke standalone shellcode runners☆37Updated last year