cocomelonc / peekaboo
Simple undetectable shellcode and code injector launcher example. Inspired by RTO malware development course.
☆236Updated 3 months ago
Alternatives and similar repositories for peekaboo:
Users that are interested in peekaboo are comparing it to the libraries listed below
- Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework☆374Updated 6 months ago
- Reduce Entropy And Obfuscate Youre Payload With Serialized Linked Lists☆412Updated last year
- Performing Indirect Clean Syscalls☆514Updated last year
- Payload Loader With Evasion Features☆314Updated 2 years ago
- JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses.☆305Updated 6 months ago
- Encrypted shellcode Injection to avoid Kernel triggered memory scans☆361Updated last year
- Automated DLL Sideloading Tool With EDR Evasion Capabilities☆471Updated last year
- Generate an obfuscated DLL that will disable AMSI & ETW☆316Updated 7 months ago
- A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.☆526Updated last month
- Collection of UAC Bypass Techniques Weaponized as BOFs☆467Updated last year
- ☆322Updated last year
- This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp…☆412Updated last year
- Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscal…☆309Updated last year
- Modules used by the Havoc Framework☆219Updated 8 months ago
- A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk☆444Updated 7 months ago
- ☆338Updated last year
- This POC gives you the possibility to compile a .exe to completely avoid statically detection by AV/EPP/EDR of your C2-shellcode and down…☆246Updated last year
- My collection of malware dev links☆255Updated 5 months ago
- Materials for the workshop "Red Team Ops: Havoc 101"☆365Updated 4 months ago
- "AMSI WRITE RAID" Vulnerability that leads to an effective AMSI BYPASS☆241Updated this week
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆390Updated 8 months ago
- Analyse your malware to surgically obfuscate it☆452Updated last month
- A proof of concept demonstrating the DLL-load proxying using undocumented Syscalls.☆333Updated last week
- C++ self-Injecting dropper based on various EDR evasion techniques.☆366Updated last year
- shellcode loader for your evasion needs☆311Updated 3 months ago
- ☆248Updated last year
- BOF implementation of @_EthicalChaos_'s ThreadlessInject project. A novel process injection technique with no thread creation, released a…☆371Updated last year
- Kill AV/EDR leveraging BYOVD attack☆339Updated last year
- ☆271Updated last year
- Patching AmsiOpenSession by forcing an error branching☆143Updated last year