low-level windows networking library using afd.sys sockets and schannel tls. bypasses winsock, winhttp, wininet and other high-level networking apis entirely.
☆17Jul 15, 2026Updated 3 weeks ago
Alternatives and similar repositories for net
Users that are interested in net are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- load arbitrary dlls, call any exported function, calls execute inside g0 as normal syscalls do from the traditional route, no syscall or …☆31May 4, 2026Updated 3 months ago
- A cryptographic payload loader and executor designed for advanced in-memory execution techniques. This project combines strong encryption…☆28Mar 2, 2026Updated 5 months ago
- go-native-syscall is Go (+ asm) Windows syscall library that resolves, hashes, caches, and invokes direct (and indirect now) NT calls wit…☆18Aug 13, 2025Updated 11 months ago
- Anti-Debugging (Self-Debugging)☆17Sep 6, 2025Updated 11 months ago
- Simple KDMapper driver dumper. Unlike other dumpers, this dumper dumps the PE headers of the image too.☆18May 10, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Implementation of KlezVirus' silent moonwalk approach for payloads☆18Feb 13, 2026Updated 5 months ago
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆56Mar 30, 2026Updated 4 months ago
- Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence a…☆21Jul 6, 2024Updated 2 years ago
- ShadowStrike A Windows EDR Platform☆36Updated this week
- first public in-process reflective PE loader for .NET NativeAOT binaries. maps a NativeAOT executable into the current process and execut…☆28Mar 28, 2026Updated 4 months ago
- Vectored Exception Handling Squared☆33Dec 27, 2025Updated 7 months ago
- Performs a global AMSI bypass by patching amsi.dll in memory.☆20Oct 14, 2025Updated 9 months ago
- Fully documented, updated, and comprehensive utilities for Windows 32-bit Wow64 processes☆18Aug 15, 2025Updated 11 months ago
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆112Jul 14, 2026Updated 3 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Opengraph-Compatible JSON Generator for BloodHound☆28Mar 30, 2026Updated 4 months ago
- From 2011: Quickly search for files in NTFS volumes parsing the Master File Table (MFT). A decent amount of how NTFS and MFT work was pai…☆28Oct 14, 2019Updated 6 years ago
- A 64-bit ELF loader in C to avoid use of execve. Supports loading and executing statically linked non-PIE and PIE binaries on Linux.☆20Jan 5, 2026Updated 7 months ago
- Havoc C2 BOF port of the KslD.sys BYOVD technique. Credential extraction from lsass via physical memory — no OpenProcess, no auditable AP…☆145Apr 22, 2026Updated 3 months ago
- ☆69Jul 14, 2026Updated 3 weeks ago
- ☆40Jun 4, 2026Updated 2 months ago
- Shellcode capable of bypassing EAF / IAF mitigations☆30Apr 11, 2023Updated 3 years ago
- Busybox-style Beacon Object Files for *nix post-exploitation. Reimplements common Unix utilities as BOFs for use in stripped environments…☆83Jul 5, 2026Updated last month
- Examples how to use a Assm (Assembly) in a go.☆24Apr 21, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆16Jun 15, 2025Updated last year
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 3 months ago
- ☆88Apr 8, 2026Updated 4 months ago
- Print the stack trace☆51Mar 8, 2026Updated 5 months ago
- Clean Indirect Syscalls with Hook Evasion & Return Address Spoofing.☆100Apr 30, 2026Updated 3 months ago
- Using call gadgets to break the call stack signature used by Elastic on proxying a module load. Provided as a Crystal Palace shared libra…☆88Nov 6, 2025Updated 9 months ago
- A runtime Assembly dumper for powershell to combat the rise in .net based crypters and malware.☆18Aug 26, 2025Updated 11 months ago
- Stealthy x64 thread manipulation library for calling functions inside target processes without creating remote threads or installing hook…☆59Oct 10, 2025Updated 9 months ago
- Yandex browser passwords and credit-cards decryption algorithm☆25Apr 8, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A stealthy and modular Windows loader designed to bypass modern EDR solutions using Module Stomping, Stack Duplication, and Advanced Slee…☆78Jul 26, 2026Updated 2 weeks ago
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated last year
- A custom run space to bypass AMSI and Constrained Language mode in PowerShell.☆20May 17, 2023Updated 3 years ago
- Load various payload (DLL from memory, Exe, etc...) in a way to evade static analysis of Antivirus. It can fetch data from various method…☆22Jun 18, 2026Updated last month
- Proof-of-Concept exploit for CVE-2026-32223☆21Apr 17, 2026Updated 3 months ago
- Set of PoC to abuse Windows minifilters functionality☆94May 1, 2026Updated 3 months ago
- A runtime for developing large-scale and complex shellcode.☆21Updated this week