gum3t / chameleonLinks
Chameleon is a polymorphic engine for x86_64 position independent shellcode that has been created out of the need to evade signature-based detections in red team environments.
☆44Updated 2 months ago
Alternatives and similar repositories for chameleon
Users that are interested in chameleon are comparing it to the libraries listed below
Sorting:
- ☆108Updated last year
- Convert your shellcode into an ASCII string☆125Updated 5 months ago
- POC of GITHUB simple C2 in rust☆52Updated 4 months ago
- Remote DLL Injection with Timer-based Shellcode Execution☆151Updated 4 months ago
- Execute shellcode via ASPNET compiler☆58Updated 2 months ago
- .NET tool used to enrich RPC telemetry☆100Updated 5 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆149Updated last week
- "Service-less" driver loading☆163Updated last year
- Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.☆161Updated 4 months ago
- Obex – Blocking unwanted DLLs in user mode☆266Updated 2 months ago
- ☆164Updated 9 months ago
- Bypasses AMSI protection through remote memory patching and parsing technique.☆54Updated 6 months ago
- ☆32Updated 5 months ago
- Comprehensive Windows Syscall Extraction & Analysis Framework☆153Updated 3 months ago
- ☆20Updated last month
- Analyse MSI files for vulnerabilities☆138Updated last year
- Bypass user-land hooks by syscall tampering via the Trap Flag☆134Updated 3 months ago
- Slides for COM Hijacking AV/EDR Talk on 38c3☆74Updated 11 months ago
- Slides and resources from MCTTP 2025 Talk☆66Updated last month
- ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.☆132Updated 7 months ago
- A small How-To on creating your own weaponized WSL file☆119Updated 4 months ago
- Version 2 - A modern 64-bit position independent meterpreter and Sliver compatible reverse_TCP Staging Shellcode based on Cracked5piders …☆101Updated 8 months ago
- ☆145Updated last year
- ☆159Updated 11 months ago
- NidhoggScript is a tool to generate "script" file that allows execution of multiple commands for Nidhogg☆50Updated last year
- ☆60Updated 7 months ago
- Commandline spoofing on Windows☆49Updated last week
- A Payload Analysis Framework☆110Updated last month
- template for developing custom C2 channels for Cobalt Strike using IAT hooks applied by a reflective loader.☆92Updated last week
- Permanently disable EDRs as local admin☆121Updated last month