JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and maintain persistence. Browser extension, electron app, and node/bun app implants are included.
☆474Jul 9, 2026Updated last month
Alternatives and similar repositories for JS-Tap
Users that are interested in JS-Tap are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ↕️🤫 Stealth redirector for your red team operation security☆1,100Jul 20, 2026Updated 3 weeks ago
- Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry☆479Aug 2, 2024Updated 2 years ago
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆286Sep 18, 2024Updated last year
- A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the …☆1,896Nov 3, 2024Updated last year
- BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions☆362Nov 19, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A beacon object file implementation of PoolParty Process Injection Technique.☆458Dec 21, 2023Updated 2 years ago
- .NET assembly loader with patchless AMSI and ETW bypass☆389Apr 19, 2023Updated 3 years ago
- An App Domain Manager Injection DLL PoC on steroids☆216Dec 14, 2023Updated 2 years ago
- ☆570Mar 28, 2024Updated 2 years ago
- PrivKit is a simple beacon object file that detects privilege escalation vulnerabilities caused by misconfigurations on Windows OS.☆611Jan 20, 2026Updated 6 months ago
- Ghosting-AMSI☆249Apr 24, 2025Updated last year
- PoC module to demonstrate automated lateral movement with the Havoc C2 framework.