coleak2021 / vehsyscall
vehsyscall:a syscall project that may bypass EDR
☆42Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for vehsyscall
- Binary Hollowing☆53Updated 2 months ago
- Self Cleanup in post-ex job☆42Updated 2 months ago
- more conveniently Visual-Studio-BOF-template☆53Updated last year
- shellcode生成框架☆78Updated 3 months ago
- ☆27Updated last year
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆58Updated 6 months ago
- 免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus☆66Updated 2 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆32Updated 6 months ago
- Amazing Obfuscator; 支持混淆 ShellCode 甚至 EXE; Support obfuscating ShellCode, even EXE.☆31Updated this week
- ☆38Updated last year
- Shellcode Reductio Entropy Tools☆62Updated last year
- kill AV/EDR☆21Updated last year
- Silently Install Chrome Extension For Persistence☆42Updated 3 months ago
- Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.☆14Updated 2 weeks ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆40Updated last year
- 一个demo☆23Updated 7 months ago
- AddDefenderExclusions Beacon Object File☆31Updated last year
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆38Updated last year
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆67Updated last year
- Rust 重构的 sRDI☆11Updated 2 months ago
- 自定义函数堆栈,从而绕过ETW检测,这个是完整版。☆10Updated 6 months ago
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆104Updated 5 months ago
- CobaltStrike4.5 Sleeve解密文件,搬砖加一点点修改, 仅作备份使用.☆30Updated 2 years ago
- ☆89Updated 3 years ago
- Beacon compiled using clang☆58Updated last year
- command execute without 445 port☆51Updated 2 years ago
- ☆43Updated 7 months ago
- CVE-2023-21707 EXP☆28Updated last year
- ☆28Updated last year
- Bypass EDR Create TaskServers☆34Updated last year