low-level windows networking library using afd.sys sockets and schannel tls. bypasses winsock, winhttp, wininet and other high-level networking apis entirely.
☆15Jul 15, 2026Updated this week
Alternatives and similar repositories for net
Users that are interested in net are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- load arbitrary dlls, call any exported function, calls execute inside g0 as normal syscalls do from the traditional route, no syscall or …☆31May 4, 2026Updated 2 months ago
- A cryptographic payload loader and executor designed for advanced in-memory execution techniques. This project combines strong encryption…☆27Mar 2, 2026Updated 4 months ago
- go-native-syscall is Go (+ asm) Windows syscall library that resolves, hashes, caches, and invokes direct (and indirect now) NT calls wit…☆18Aug 13, 2025Updated 11 months ago
- Anti-Debugging (Self-Debugging)☆17Sep 6, 2025Updated 10 months ago
- Simple KDMapper driver dumper. Unlike other dumpers, this dumper dumps the PE headers of the image too.☆18May 10, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Implementation of KlezVirus' silent moonwalk approach for payloads☆18Feb 13, 2026Updated 5 months ago
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆56Mar 30, 2026Updated 3 months ago
- Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence a…☆21Jul 6, 2024Updated 2 years ago
- ShadowStrike A Windows EDR Platform☆31Jul 7, 2026Updated last week
- first public in-process reflective PE loader for .NET NativeAOT binaries. maps a NativeAOT executable into the current process and execut…☆28Mar 28, 2026Updated 3 months ago
- Vectored Exception Handling Squared☆30Dec 27, 2025Updated 6 months ago
- Fully documented, updated, and comprehensive utilities for Windows 32-bit Wow64 processes☆18Aug 15, 2025Updated 11 months ago
- Performs a global AMSI bypass by patching amsi.dll in memory.☆18Oct 14, 2025Updated 9 months ago
- Stealthy x64 thread manipulation library for calling functions inside target processes without creating remote threads or installing hook…☆59Oct 10, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- BingusLdr is a DLL loader built with Crystal Palace that uses a CET compatible stack spoofing technique.☆89Updated this week
- Opengraph-Compatible JSON Generator for BloodHound☆29Mar 30, 2026Updated 3 months ago
- From 2011: Quickly search for files in NTFS volumes parsing the Master File Table (MFT). A decent amount of how NTFS and MFT work was pai…☆28Oct 14, 2019Updated 6 years ago
- A 64-bit ELF loader in C to avoid use of execve. Supports loading and executing statically linked non-PIE and PIE binaries on Linux.☆20Jan 5, 2026Updated 6 months ago
- Havoc C2 BOF port of the KslD.sys BYOVD technique. Credential extraction from lsass via physical memory — no OpenProcess, no auditable AP…☆143Apr 22, 2026Updated 2 months ago
- ☆58Updated this week
- ☆40Jun 4, 2026Updated last month
- Shellcode capable of bypassing EAF / IAF mitigations☆30Apr 11, 2023Updated 3 years ago
- ☆16Jun 15, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Busybox-style Beacon Object Files for *nix post-exploitation. Reimplements common Unix utilities as BOFs for use in stripped environments…☆82Jul 5, 2026Updated 2 weeks ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 3 months ago
- Examples how to use a Assm (Assembly) in a go.☆25Apr 21, 2025Updated last year
- Print the stack trace☆51Mar 8, 2026Updated 4 months ago
- ☆86Apr 8, 2026Updated 3 months ago
- Clean Indirect Syscalls with Hook Evasion & Return Address Spoofing.☆98Apr 30, 2026Updated 2 months ago
- Using call gadgets to break the call stack signature used by Elastic on proxying a module load. Provided as a Crystal Palace shared libra…☆87Nov 6, 2025Updated 8 months ago
- A runtime Assembly dumper for powershell to combat the rise in .net based crypters and malware.☆18Aug 26, 2025Updated 10 months ago
- A simple Reset Survival PoC☆15Jan 25, 2026Updated 5 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Decrypting yandex browser passwords☆28Apr 8, 2025Updated last year
- A stealthy and modular Windows loader designed to bypass modern EDR solutions using Module Stomping, Stack Duplication, and Advanced Slee…☆70Jul 11, 2026Updated last week
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated 11 months ago
- Yandex browser passwords and credit-cards decryption algorithm☆25Apr 8, 2025Updated last year
- Proof-of-Concept exploit for CVE-2026-32223☆21Apr 17, 2026Updated 3 months ago
- A custom run space to bypass AMSI and Constrained Language mode in PowerShell.☆20May 17, 2023Updated 3 years ago
- Load various payload (DLL from memory, Exe, etc...) in a way to evade static analysis of Antivirus. It can fetch data from various method…☆22Jun 18, 2026Updated last month