chbGSmCm / bof-deez-nutsLinks
Classic Bofa adapted to CobaltStrike.
☆11Updated 3 years ago
Alternatives and similar repositories for bof-deez-nuts
Users that are interested in bof-deez-nuts are comparing it to the libraries listed below
Sorting:
- A work in progress BOF/COFF loader in Rust☆51Updated 2 years ago
- ☆44Updated 2 years ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆102Updated 2 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆84Updated 4 years ago
- Beacon Object File allowing creation of Beacons in different sessions.☆82Updated 3 years ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated 2 years ago
- Sleep Obfuscation☆45Updated 3 years ago
- ☆58Updated 2 years ago
- Windows x64 Process Injection via Ghostwriting with Dynamic Configuration☆29Updated 4 years ago
- Beacon Object Files (not Buffer Overflows)☆57Updated 2 years ago
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆62Updated last year
- ☆14Updated 3 years ago
- ShellcodeFluctuation PoC ported to Nim☆79Updated 3 years ago
- Get your data from the resource section manually, with no need for windows apis☆65Updated last year
- ☆57Updated last year
- Halos Gate-based NTAPI Unhooker☆52Updated 3 years ago
- ☆100Updated 2 years ago
- Donut generator in rust.☆27Updated 3 years ago
- Utilizing hardware breakpoints to evade monitoring by Endpoint Detection and Response platforms☆132Updated 2 years ago
- My implementation of Halo's Gate technique in C#☆54Updated 3 years ago
- ☆58Updated 2 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Updated 3 years ago
- Proof of concept Beacon Object File (BOF) that attempts to detect userland hooks in place by AV/EDR☆105Updated 4 years ago
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆62Updated last year
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆60Updated 3 years ago
- ☆42Updated 2 years ago
- Load a dynamic library from memory using a fuse mount☆31Updated 2 years ago
- D/Invoke implementation in Nim☆103Updated 3 years ago
- Shellcode Injector that obtains system call opcodes using the Halo's Gate method to evade EDR Hooks.☆19Updated 3 years ago
- Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes☆110Updated 2 years ago