frkngksl / NiCOFF
COFF and BOF Loader written in Nim
☆168Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for NiCOFF
- A tool for converting SysWhispers2 syscalls for use with Nim projects☆117Updated 2 years ago
- Indirect Syscalls: HellsGate in Nim, but making sure that all syscalls go through NTDLL (as in RecycledGate).☆179Updated last year
- NimicStack is the pure Nim implementation of Call Stack Spoofing technique to mimic legitimate programs☆91Updated 2 years ago
- Nim version of MDSec's Parallel Syscall PoC☆123Updated 2 years ago
- A quick example of the Hells Gate technique in Nim☆92Updated 3 years ago
- ShellcodeFluctuation PoC ported to Nim☆75Updated 2 years ago
- D/Invoke implementation in Nim☆99Updated 2 years ago
- ErebusGate for Nim Bypass AV/EDR☆159Updated 2 years ago
- A tool for converting SysWhispers3 syscalls for use with Nim projects☆138Updated 2 years ago
- Automated compiler obfuscation for nim☆135Updated 2 years ago
- PE Crypter written in Nim☆94Updated 3 years ago
- Nim Library for Offensive Security Development☆196Updated last year
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆110Updated last year
- Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) via Syswhispers2☆178Updated 2 years ago
- Coerce Windows machines auth via MS-EVEN☆153Updated 10 months ago
- Script to use SysWhispers2 direct system calls from Cobalt Strike BOFs☆117Updated 2 years ago
- Section Mapping Process Injection (secinject): Cobalt Strike BOF☆87Updated 2 years ago
- Sleep obfuscation for shellcode implants and their reflective shit☆52Updated last year
- Start new PowerShell without etw and amsi in pure nim☆157Updated 2 years ago
- ☆140Updated last year
- DLL sideloading/proxying with Nim!☆164Updated last year
- Nim Payload Generation☆59Updated last year
- ☆138Updated 2 years ago
- Indirect syscalls + DInvoke made simple.☆86Updated 3 weeks ago
- BOF implementation of the research by @jonasLyk and the drafted PoC from @LloydLabs☆169Updated 3 years ago
- Cobalt Strike User Defined Reflective Loader (UDRL). Check branches for different functionality.☆134Updated 2 years ago
- Collection of Beacon Object Files (BOF) for Cobalt Strike☆170Updated last year
- Your syscall factory☆121Updated 2 months ago
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆86Updated 2 years ago