gavz / s4killerLinks
☆18Updated last year
Alternatives and similar repositories for s4killer
Users that are interested in s4killer are comparing it to the libraries listed below
Sorting:
- ☆57Updated last year
- x64 version☆37Updated 3 years ago
- DLL Exports Extraction BOF with optional NTFS transactions.☆82Updated 3 years ago
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆38Updated 2 years ago
- A method to execute shellcode using RegisterWaitForInputIdle API.☆55Updated 2 years ago
- all credits go to @mgeeky☆64Updated 3 years ago
- This is my own implementation of the Perun's Fart technique by Sektor7☆71Updated 3 years ago
- ☆30Updated 2 years ago
- WinRAR 0day CVE-2025-8088 PoC RAR Archive☆30Updated last week
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆100Updated 2 years ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated 2 years ago
- ☆54Updated 2 years ago
- Dump Citrix Secure Access auth cookie from the process memory☆76Updated 3 years ago
- Cobalt Strike Beacon Object File (BOF) that uses CredUIPromptForWindowsCredentials API to invoke credential prompt☆20Updated 2 years ago
- ☆40Updated 2 years ago
- DynamicSyscalls is a library written in .net resolves the syscalls dynamically (Has nothing to do with hooking/unhooking)☆66Updated 2 years ago
- Parses Cobalt Strike malleable C2 profiles.☆58Updated this week
- ☆36Updated 2 years ago
- Persistence via Shell Extensions☆62Updated 2 years ago
- ☆56Updated 2 years ago
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆23Updated last year
- Beacon Debugger☆51Updated 9 months ago
- Repo that holds random POCs☆51Updated last year
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆51Updated 2 years ago
- UUID based Shellcode loader for your favorite C2☆86Updated 3 years ago
- Load a dynamic library from memory using a fuse mount☆31Updated last year
- BOF implementation of Adopt. Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆15Updated 3 years ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆28Updated 3 years ago
- A Dynamic MSBuild task to help with minor obfuscation of C# Binaries to evade static signatures on each compilation☆37Updated 3 months ago
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆54Updated last year