Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
☆76Mar 16, 2026Updated 4 months ago
Alternatives and similar repositories for donut_ollvm
Users that are interested in donut_ollvm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆31Oct 23, 2023Updated 2 years ago
- A tool for automatic patch shellcode into binary file to bypass AV. / 一个自动patch shellcode到二进制文件的工具☆582Jul 19, 2026Updated 3 weeks ago
- 主要用于隐藏进程真实路径,进程带windows真签名☆119Oct 15, 2024Updated last year
- Simulate per-process disconnection in red team environments☆116Jun 6, 2025Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆208May 28, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Get sql server connection configuration information☆28Aug 26, 2024Updated last year
- Golang implement winrm client with pass the hash☆32Apr 29, 2024Updated 2 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆141Dec 26, 2023Updated 2 years ago
- 一款基于PE Patch技术的后渗透免杀工具,主要支持x64☆351Mar 5, 2025Updated last year
- Take a screenshot without injection for Cobalt Strike☆204Jun 7, 2023Updated 3 years ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆165Oct 27, 2024Updated last year
- 添加计划任务方法集合☆315Aug 6, 2023Updated 3 years ago
- A BOF/COFF loader implemented in Go and CGO.☆23Jan 16, 2024Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆61Mar 1, 2024Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- 向日葵 密码提取工具☆14Sep 10, 2024Updated last year
- can convert EXE/DLL into position-independent shellcode☆58Jul 18, 2026Updated 3 weeks ago
- 使用Visral Studio开发ShellCode☆245Oct 11, 2023Updated 2 years ago
- CVE-2020-1472 C++☆84Sep 2, 2022Updated 3 years ago
- 寻找可利用的白文件☆563Aug 18, 2025Updated 11 months ago
- ☆18May 6, 2025Updated last year
- Loader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB…☆94Jul 26, 2025Updated last year
- 白文件patch☆27Aug 14, 2024Updated last year
- A runtime for developing large-scale and complex shellcode.☆21Updated this week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆184Aug 3, 2024Updated 2 years ago
- 自动化找白文件,用于扫描 EXE 文件的导入表,列出导入的DLL文件,并筛选出非系统DLL,符合条件的文件将被复制到特定的 X64 或 X86 文件夹☆637Mar 24, 2026Updated 4 months ago
- 利用EFSRPC协议批量探测出网☆67Oct 12, 2023Updated 2 years ago
- ☆97May 26, 2023Updated 3 years ago
- 通过C/C++实现的 Windows RID Hijacking persistence technique (RID劫持 影子账户 账户克隆).☆87Dec 22, 2021Updated 4 years ago
- Silently Install Chrome Extension For Persistence☆102Jul 20, 2024Updated 2 years ago
- ☆148Mar 23, 2025Updated last year
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆103Mar 20, 2023Updated 3 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆30Jan 2, 2025Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- 提取域控日志,支持远程提取☆169Mar 17, 2025Updated last year
- Fileless atexec, no more need for port 445☆416Mar 28, 2024Updated 2 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆221Oct 9, 2022Updated 3 years ago
- A little tool to play with Windows security☆12Jan 21, 2026Updated 6 months ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆53Jul 1, 2023Updated 3 years ago
- Basic Psexec clone, but in golang.☆17Jul 2, 2022Updated 4 years ago
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆29Jun 13, 2024Updated 2 years ago