自定义函数堆栈,从而绕过ETW检测,这个是完整版。
☆13Apr 15, 2024Updated last year
Alternatives and similar repositories for CustomStack
Users that are interested in CustomStack are comparing it to the libraries listed below
Sorting:
- 使用Visral Studio开发ShellCode☆236Oct 11, 2023Updated 2 years ago
- ☆10Nov 2, 2023Updated 2 years ago
- 内网渗透、工具开发、二进制等相关笔记☆12Mar 26, 2023Updated 2 years ago
- Rust 重构的 sRDI☆17Sep 9, 2024Updated last year
- Shadow Rebirth - An Aggressive Outbreak Anti-Debugging Technique☆20Dec 3, 2024Updated last year
- File entropy calculator - Golang☆30Feb 7, 2024Updated 2 years ago
- beta☆119Sep 24, 2024Updated last year
- In-memory sleep encryption and heap encryption for Go applications through a shellcode function.☆40Jan 14, 2024Updated 2 years ago
- 一个demo☆23Apr 2, 2024Updated last year
- Get password/cookie/history from browser and use devtools protocol to bypass edr monitoring☆63Apr 22, 2025Updated 10 months ago
- 无Windows API的新型恶意程序:自缺陷程序利用堆栈溢出的隐匿稳定攻击技术研究,A new type of malicious program without Windows API☆88Mar 27, 2025Updated 11 months ago
- Coffee is a loader for ELF (Executable and Linkable Format) object files written in Rust. Coffee是一个用Rust语言编写的ELF object文件的加载器☆63Apr 29, 2024Updated last year
- Reverse Socks5 proxy for windows☆16Oct 13, 2022Updated 3 years ago
- GXX是一款强大的指纹识别工具,基于YAML配置的规则进行目标系统识别。 本工具支持多种协议(HTTP/HTTPS、TCP、UDP),可 进行高效的批量目标扫描和精准识别。☆31Feb 22, 2026Updated 3 weeks ago
- Self Cleanup in post-ex job☆59Sep 10, 2024Updated last year
- ☆37Nov 8, 2024Updated last year
- Stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven☆267Oct 16, 2024Updated last year
- use python on windows with full submodule support without installation☆30Jan 23, 2025Updated last year
- Rust implementation, creating a scheduled task programmatically with user logon trigger.☆47Jun 10, 2025Updated 9 months ago
- 重构Beacon☆165Aug 19, 2024Updated last year
- ☆11Aug 8, 2022Updated 3 years ago
- ☆19Oct 2, 2022Updated 3 years ago
- Educational proof-of-concept demonstrating DEP/NX bypass using hardware breakpoints, vectored exception handling, and instruction emulati…☆99Oct 17, 2025Updated 5 months ago
- CloudflaredRAT is a simple combination of popular open-source tools, wrapping a local-facing shell with Cloudflares Argo Tunnel in an exe…☆14Oct 30, 2020Updated 5 years ago
- PE to shellcode☆28Jan 1, 2025Updated last year
- Tomcat-内存马-Webshell☆10Feb 23, 2021Updated 5 years ago
- 重构Beacon☆15Aug 25, 2024Updated last year
- Callback Function Loader Implemented in Go☆140Mar 26, 2024Updated last year
- Template for writing shellcode in rust☆26Feb 27, 2022Updated 4 years ago
- A dynamic HTTP/S stager that lets one shellcode loader be reused for different encrypted payloads - no rebuilds.☆20Oct 1, 2025Updated 5 months ago
- A cmake template for crystal palace☆39Dec 20, 2025Updated 3 months ago
- ReflectiveDLL学习代码☆35Jul 12, 2020Updated 5 years ago
- PoC Implementation of a fully dynamic call stack spoofer☆926Jul 20, 2024Updated last year
- ☆245Sep 19, 2023Updated 2 years ago
- A simple Sleepmask BOF example☆171Nov 24, 2025Updated 3 months ago
- Beacon Debugger☆55Oct 28, 2024Updated last year
- 将任何 elf 或命令转换为 shellcode☆61Mar 20, 2024Updated 2 years ago
- CobaltStrike Reflective Dll Source☆19Feb 20, 2022Updated 4 years ago
- a demo module for the kaine agent to execute and inject assembly modules☆41Aug 28, 2024Updated last year