Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
☆69Oct 10, 2025Updated 4 months ago
Alternatives and similar repositories for donut_ollvm
Users that are interested in donut_ollvm are comparing it to the libraries listed below
Sorting:
- can convert EXE/DLL into position-independent shellcode☆40Feb 1, 2026Updated last month
- 主要用于隐藏进程真实路径,进程带windows真签名☆119Oct 15, 2024Updated last year
- vehsyscall:a syscall project that may bypass EDR☆62Mar 1, 2024Updated 2 years ago
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆201May 28, 2024Updated last year
- A BOF/COFF loader implemented in Go and CGO.☆23Jan 16, 2024Updated 2 years ago
- 向日葵 密码提取工具☆13Sep 10, 2024Updated last year
- Get sql server connection configuration information☆28Aug 26, 2024Updated last year
- 一个手动或自动patch shellcode到二进制文件的免杀工具/A tool for manual or automatic patch shellcode into binary file oder to bypass AV.☆562May 30, 2025Updated 9 months ago
- ☆94May 26, 2023Updated 2 years ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆161Oct 27, 2024Updated last year
- ☆31Oct 23, 2023Updated 2 years ago
- Golang implement winrm client with pass the hash☆32Apr 29, 2024Updated last year
- 白文件patch☆26Aug 14, 2024Updated last year
- ☆22Jan 15, 2025Updated last year
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆31Jan 2, 2025Updated last year
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆181Aug 3, 2024Updated last year
- 添加计划任务方法集合☆309Aug 6, 2023Updated 2 years ago
- exchange接口爆破|邮箱爆破☆20Sep 19, 2024Updated last year
- 使用Visral Studio开发ShellCode☆235Oct 11, 2023Updated 2 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆139Dec 26, 2023Updated 2 years ago
- ☆46Dec 5, 2023Updated 2 years ago
- ☆51Aug 28, 2021Updated 4 years ago
- Take a screenshot without injection for Cobalt Strike☆203Jun 7, 2023Updated 2 years ago
- 寻找可利用的白文件☆556Aug 18, 2025Updated 6 months ago
- 腾讯安全沙龙 一 二 三 期PPT集合☆19May 24, 2025Updated 9 months ago
- Port of Mandiant ShellcodeHashes plugin from IDA to BinaryNinja☆11Jul 24, 2024Updated last year
- 重构Beacon☆165Aug 19, 2024Updated last year
- 利用EFSRPC协议批量探测出网☆67Oct 12, 2023Updated 2 years ago
- 高版本Fastjson在Java原生反序列化中的利用演示☆26Jan 12, 2025Updated last year
- Fileless atexec, no more need for port 445☆404Mar 28, 2024Updated last year
- 一款基于PE Patch技术的后渗透免杀工具,主要支持x64☆354Mar 5, 2025Updated last year
- C2 redirector base on caddy☆213May 28, 2024Updated last year
- 抓取主机保存的RDP凭据☆17Dec 26, 2020Updated 5 years ago
- 通过生成不同hash的ico并写入程序中,实现批量bypass360QVM☆259Aug 10, 2023Updated 2 years ago
- 一个普通的BOF用来BypassUAC☆22Apr 6, 2024Updated last year
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆27Jun 13, 2024Updated last year
- Curated list of public Beacon Object Files(BOFs) build in as submodules for easy cloning☆137Dec 7, 2025Updated 2 months ago
- BypassCredGuard CS BOF☆49Jan 23, 2025Updated last year
- Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThrea…☆1,294Jun 21, 2024Updated last year