☆101Oct 27, 2023Updated 2 years ago
Alternatives and similar repositories for PEPacker
Users that are interested in PEPacker are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Exploitation of process killer drivers☆205Oct 17, 2023Updated 2 years ago
- Indirect Dynamic Syscall, SSN + Syscall address sorting via Modified TartarusGate approach + Remote Process Injection via APC Early Bird …☆802Jan 26, 2026Updated 4 months ago
- ☆119Aug 7, 2022Updated 3 years ago
- PoC module to demonstrate automated lateral movement with the Havoc C2 framework.☆313Dec 9, 2023Updated 2 years ago
- Shellcode Loader Implementing Indirect Dynamic Syscall , API Hashing, Fileless Shellcode retrieving using Winsock2☆295Jul 15, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Native Syscalls Shellcode Injector☆266Jul 2, 2023Updated 2 years ago
- A Stealthy Lsass Dumper - can abuse ProcExp152.sys driver to dump PPL Lsass, no dbghelp.lib calls.☆326Jan 31, 2023Updated 3 years ago
- Modified versions of the Cobalt Strike Process Injection Kit☆108Jan 24, 2024Updated 2 years ago
- Small PoC of using a Microsoft signed executable as a lolbin.☆140Feb 27, 2023Updated 3 years ago
- ☆145May 17, 2023Updated 3 years ago
- ☆19Aug 25, 2022Updated 3 years ago
- .NET assembly loader with patchless AMSI and ETW bypass☆383Apr 19, 2023Updated 3 years ago
- Execute unmanaged Windows executables in CobaltStrike Beacons☆723Mar 4, 2023Updated 3 years ago
- Lockless BOF☆79May 2, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Find DLLs with RWX section☆81Jul 3, 2023Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆101Mar 20, 2023Updated 3 years ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆68May 2, 2023Updated 3 years ago
- Winsocket for Cobalt Strike.☆105Jul 6, 2023Updated 2 years ago
- ☆42Jul 10, 2023Updated 2 years ago
- Simple dotnet Native AOT app that uses AsmResolver to convert shellcode to PE☆66May 1, 2023Updated 3 years ago
- Bypassing UAC with SSPI Datagram Contexts☆469Sep 24, 2023Updated 2 years ago
- ☆128Jun 28, 2023Updated 2 years ago
- Reflective DLL Injection Made Bella☆249Jan 6, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆103Oct 7, 2023Updated 2 years ago
- more conveniently Visual-Studio-BOF-template☆76Sep 12, 2023Updated 2 years ago
- A beacon object file implementation of PoolParty Process Injection Technique.☆451Dec 21, 2023Updated 2 years ago
- Abusing mhyprotect to kill AVs / EDRs / XDRs / Protected Processes.☆409Mar 16, 2026Updated 3 months ago
- Terminate AV/EDR Processes using kernel driver☆353Jun 12, 2023Updated 3 years ago
- A simple present scene, kernel allocation injector.☆27Jun 12, 2022Updated 4 years ago
- ☆56Mar 25, 2024Updated 2 years ago
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆126Feb 13, 2023Updated 3 years ago
- Implementation of Advanced Module Stomping and Heap/Stack Encryption☆227Jul 25, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Beacon Object File Loader☆296Dec 3, 2023Updated 2 years ago
- A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and re…☆470Aug 23, 2023Updated 2 years ago
- A small x64 library to load dll's into memory.☆468Nov 6, 2023Updated 2 years ago
- Bypass LSA protection using the BYODLL technique☆181Sep 21, 2024Updated last year
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆112Jul 15, 2023Updated 2 years ago
- ☆180Mar 27, 2023Updated 3 years ago
- A BOF that runs unmanaged PEs inline☆701Oct 23, 2024Updated last year