ghost5egy / Shellcode-Ghost
☆13Updated 2 years ago
Alternatives and similar repositories for Shellcode-Ghost:
Users that are interested in Shellcode-Ghost are comparing it to the libraries listed below
- Beacon Object Files.☆32Updated 11 months ago
- BOF/COFF obj file to PIC(shellcode). by golang☆37Updated 2 years ago
- DLL Unhooking☆12Updated 3 years ago
- A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.☆19Updated 2 years ago
- DiagTrack Eop (From Service Account to SYSTEM)☆21Updated 2 years ago
- Cs-Sleep-Mask-Fiber☆17Updated 4 months ago
- Cobalt Strike Malleable Profile Inline Patch Template: A Position Independent Code (PIC) Code Template For Creating Shellcode That Can Be…☆38Updated 4 years ago
- Just another version of the custom stack call from Proxy-Function-Calls-For-ETwTI☆31Updated last year
- dump lsass tool☆39Updated 2 years ago
- Windows 7/2008 R2 EoP☆13Updated 3 years ago
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆44Updated last year
- impersonate trustedinstaller by fiddling with tokens☆17Updated 3 years ago
- unhook etw by golang☆10Updated 3 years ago
- golang implementation of Syswhisper2/Syswhisper3☆23Updated 2 years ago
- x64 version☆30Updated 3 years ago
- desktop screenshot☆29Updated last year
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 2 years ago
- Golang implementation of Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll;☆32Updated 2 years ago
- 针对于AzureAttestService服务的本地提权Eop,微软表示已经进行修复☆2Updated 2 years ago
- Use current thread token to execute command☆15Updated 4 years ago
- Learning notes of amazing Sliver C2 project.☆24Updated last year
- HookDetection☆44Updated 3 years ago
- DPX - the Doge Packer for eXecutables☆27Updated 3 years ago
- This project is created for research into antivirus evasion by unhooking.☆15Updated 3 years ago
- Ntdll Unhooking POC☆19Updated 2 years ago
- BlowBeef is a tool for analyzing WMI data.☆18Updated 3 years ago
- Fork & modify of Wireguard's Memmod☆31Updated last year
- ☆18Updated 3 years ago
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Updated last year
- This is a simple project made to evade https://github.com/thefLink/Hunt-Sleeping-Beacons by using a busy wait instead of beacon's built i…☆32Updated 3 years ago