hiatus / snc
AES-encrypted TCP/IP swiss army knife.
☆9Updated 2 years ago
Alternatives and similar repositories for snc:
Users that are interested in snc are comparing it to the libraries listed below
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆62Updated last year
- Windows LPE Nday☆25Updated 11 months ago
- 「 🧊」Ring 3 Rootkit for Windows 10☆59Updated 3 months ago
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader.☆106Updated last year
- ☆39Updated 9 months ago
- using the gpu to hide your payload☆56Updated 2 years ago
- Windows AppLocker Driver (appid.sys) LPE☆53Updated 8 months ago
- A (quite) simple steganography algorithm to hide shellcodes within bitmap image.☆21Updated 10 months ago
- LKM rootkit for modern kernels, with DNS C2 and a simple web interface☆64Updated 3 weeks ago
- Simple ETW unhook PoC. Overwrites NtTraceEvent opcode to disable ETW at Nt-function level.☆46Updated last year
- abusing Process Hacker driver to terminate other processes (BYOVD)☆82Updated last year
- 🗡️ A multi-user malleable C2 framework targeting Windows. Written in C++ and Python☆44Updated last year
- Code used in this post https://captmeelo.com/redteam/maldev/2022/04/21/kernelcallbacktable-injection.html☆120Updated 2 years ago
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆68Updated last year
- Proof of concept code for thread pool based process injection in Windows.☆115Updated this week
- bring your own vulnerable driver☆92Updated last year
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆101Updated 2 years ago
- Implementing the ghostly hollowing PE injection technique using tampered syscalls.☆140Updated 3 weeks ago
- Red Team Operation's Defense Evasion Technique.☆52Updated 9 months ago
- Client/server code that impersonates TLS 1.3 to disguise C2 activity.☆65Updated 2 years ago
- Splitting and executing shellcode across multiple pages☆100Updated last year
- ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption☆83Updated 2 years ago
- A firebeam plugin that exploits the CVE-2024-26229 vulnerability to perform elevation of privilege from a unprivileged user☆39Updated 7 months ago
- ☆78Updated last year
- ☆36Updated 2 years ago
- Load static-compiled PE from remote server.☆60Updated 3 years ago
- ☆36Updated 2 years ago
- Create Anti-Copy DRM Malware☆54Updated 7 months ago
- ☆47Updated 2 years ago
- Malware?☆69Updated 5 months ago