hkl1x / Bypass_AVLinks
免杀木马样本
☆21Updated this week
Alternatives and similar repositories for Bypass_AV
Users that are interested in Bypass_AV are comparing it to the libraries listed below
Sorting:
- MalwareScan is a lightweight and fast malware scanner written in Python. It supports both Windows and Linux platforms and provides an ope…☆13Updated 4 months ago
- PfSense Stored XSS lead to Arbitrary Code Execution exploit☆48Updated 8 months ago
- Scan strings or files for malware using the Windows Antimalware Scan Interface☆30Updated 2 years ago
- Lena's scripts/code/resources for malware analysis☆26Updated last year
- Early cascade injection PoC based on Outflanks blog post written in Rust☆56Updated 8 months ago
- Proof of Concept for CVE-2025-32756 - A critical stack-based buffer overflow vulnerability affecting multiple Fortinet products.☆99Updated 3 months ago
- This Python-based GUI application allows you to track the latest security vulnerabilities (CVEs) using the☆39Updated 6 months ago
- A remote unauthenticated DOS POC exploit that targets the authentication implementation of Havoc.☆38Updated last year
- ☆29Updated last year
- Docker container for running CobaltStrike 4.10☆37Updated last year
- CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)☆41Updated 7 months ago
- Repo for all my exploits/PoCs☆53Updated 4 months ago
- Detect Remote Local Credentials Dumping using a Shadow Snapshot☆30Updated 8 months ago
- ECC Public Key Cryptography☆39Updated last year
- Work in progress experiments with reverse shells, AV bypass and extraction of secrets from memory in C☆39Updated 5 years ago
- exfiltration/infiltration toolkit☆24Updated last year
- ☆35Updated last year
- ☆47Updated 3 months ago
- Enumerate SSN (System Service Numbers or Syscall ID) and syscall instruction address in ntdll module by parsing the PEB of the current pr…☆21Updated last year
- ☆59Updated 10 months ago
- Automated script for obfuscating, rebranding and renaming the Havoc C2 Framework to evade AV/EDR and C2 hunters.☆44Updated last month
- ☆58Updated 11 months ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆44Updated last year
- BlackHat Asia 2025 code and presentations☆18Updated 5 months ago
- ☆34Updated last year
- Make an Linux Kernel rootkit visible again.☆57Updated 7 months ago
- PoC showcasing new DarkGate Install Script retrieval technique via DNS TXT Record☆42Updated last year
- Intelligent Malware that takes screenshots for entire monitors and exfiltrate them through Trusted Channel Slack to the C2 server that's …☆35Updated this week
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆35Updated last year
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆33Updated 2 years ago