ShadowDropper is a utility for covertly delivering and executing payloads on a target system.
☆27Jul 4, 2025Updated 7 months ago
Alternatives and similar repositories for ShadowDropper
Users that are interested in ShadowDropper are comparing it to the libraries listed below
Sorting:
- ☆48Oct 14, 2025Updated 4 months ago
- Windows C++ Implant for Exploration C2☆44Jan 26, 2026Updated last month
- Impersonate Windows tokens in Nim☆23Aug 4, 2025Updated 6 months ago
- MalwareScan is a lightweight and fast malware scanner written in Python. It supports both Windows and Linux platforms and provides an ope…☆13Jun 2, 2025Updated 8 months ago
- Misery Loader to bypass modern EDR solutions☆18Dec 20, 2024Updated last year
- process hollowing variant using NtCreateSection + NtMapViewOfSection + ResumeThread☆31Jan 9, 2022Updated 4 years ago
- A collection of sample code used in some experiments with Sliver C2☆16Mar 28, 2023Updated 2 years ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆166Jan 12, 2026Updated last month
- PoC script to demonstrate collection of SCCM attack paths that can be viewed in BH with OpenGraph☆24Aug 2, 2025Updated 6 months ago
- Nim Shellcode Injector☆15Jan 24, 2021Updated 5 years ago
- ☆36Jul 1, 2025Updated 7 months ago
- P4wnP1 A.L.O.A. by MaMe82 is a framework which turns a Rapsberry Pi Zero W into a flexible, low-cost platform for pentesting, red teaming…☆33Jul 5, 2025Updated 7 months ago
- PoC framework for Sliver compilation☆22Jan 14, 2025Updated last year
- Chameleon is a polymorphic engine for x86_64 position independent shellcode that has been created out of the need to evade signature-base…☆47Oct 3, 2025Updated 4 months ago
- ☆53Sep 23, 2025Updated 5 months ago
- Guide on using the PPPwnGo GUI tool☆11Sep 26, 2024Updated last year
- Generate Secure, Polymorphic, Evasive (lol) Payloads☆29Oct 2, 2025Updated 4 months ago
- Freyja is a Golang, Purple Team agent that compiles into Windows, Linux and macOS x64 executables.☆63Oct 29, 2024Updated last year
- Automated script for obfuscating, rebranding and renaming the Havoc C2 Framework to evade AV/EDR and C2 hunters.☆46Aug 13, 2025Updated 6 months ago
- Abusing SSRF to deliver an authenticated command injection payload☆29Sep 1, 2025Updated 5 months ago
- NSecSoftBYOVD POC☆56Feb 12, 2026Updated 2 weeks ago
- Evasive Payload Delivery Server & C2 Redirector☆112Nov 3, 2025Updated 3 months ago
- The different ways to dump lsass☆264Aug 15, 2025Updated 6 months ago
- ☆54Oct 13, 2025Updated 4 months ago
- An improvement and a different approach to Mockingjay Self-Injection.☆35May 21, 2024Updated last year
- ☆47Dec 5, 2025Updated 2 months ago
- More EFS coerced authentication method with PetitPotam.py☆27Mar 21, 2023Updated 2 years ago
- Implementing Ghostly-Hollowing using tampered syscalls for remote PE injection☆70Dec 26, 2025Updated 2 months ago
- A lightweight Command and Control (C2) framework built for offensive security research and red teaming (Post Exploitation).☆68Dec 17, 2025Updated 2 months ago
- Static binary analysis with Detect It Easy — 100% in your browser, no uploads.☆53Feb 10, 2026Updated 2 weeks ago
- Enumerate active EDR's on the system☆150Sep 23, 2025Updated 5 months ago
- A POC for developing BOFs for Sliver, Havoc, Cobalt Strike or most COFFLoaders in Rust.☆74Aug 24, 2025Updated 6 months ago
- GitHub 泄露的 API 密钥扫描器。支持 OpenAI/Claude/Gemini/Azure。异步验证 + GPT-4 探测 + 余额检测。丰富的 TUI 控制面板。☆23Jan 11, 2026Updated last month
- Patches the AmsiScan function in clr.dll allowing for unrestricted assembly loading in .NET☆50May 5, 2025Updated 9 months ago
- Yet Another LinkedIn Scraper☆33Mar 9, 2023Updated 2 years ago
- sideloading PoC using onedrive.exe & version.dll☆91Oct 30, 2025Updated 3 months ago
- (EDR) Dll Unhooking = kernel32.dll, kernelbase.dll, ntdll.dll, user32.dll, apphelp.dll, msvcrt.dll.☆51May 22, 2025Updated 9 months ago
- Beacon Object Files (BOFs) for Cobalt Strike and Havoc C2. Implementations of Active Directory attacks and post-exploitation techniques.☆101Jan 26, 2026Updated last month
- Remote service-staging tool built on Impacket, designed for BOF-style lateral movement workflows that lets you upload custom service load…☆119Dec 7, 2025Updated 2 months ago