Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
☆76Mar 16, 2026Updated 6 months ago
Alternatives and similar repositories for donut_ollvm
Users that are interested in donut_ollvm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆31Oct 23, 2023Updated 2 years ago
- A tool for automatic patch shellcode into binary file to bypass AV. / 一个自动patch shellcode到二进制文件的工具☆582Updated this week
- 主要用于隐藏进程真实路径,进程带windows真签名☆117Oct 15, 2024Updated last year
- Simulate per-process disconnection in red team environments☆115Jun 6, 2025Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆208May 28, 2024Updated 2 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Get sql server connection configuration information☆27Aug 26, 2024Updated 2 years ago
- Golang implement winrm client with pass the hash☆33Apr 29, 2024Updated 2 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆140Dec 26, 2023Updated 2 years ago
- 一款基于PE Patch技术的后渗透免杀工具,主要支持x64☆348Mar 5, 2025Updated last year
- Take a screenshot without injection for Cobalt Strike☆202Jun 7, 2023Updated 3 years ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆164Oct 27, 2024Updated last year
- 添加计划任务方法集合☆312Aug 6, 2023Updated 3 years ago
- A BOF/COFF loader implemented in Go and CGO.☆22Jan 16, 2024Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆60Mar 1, 2024Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- 向日葵 密码提取工具☆15Sep 10, 2024Updated 2 years ago
- can convert EXE/DLL into position-independent shellcode☆63Sep 14, 2026Updated last week
- 使用Visral Studio开发ShellCode☆243Oct 11, 2023Updated 2 years ago
- CVE-2020-1472 C++☆83Sep 2, 2022Updated 4 years ago
- 寻找可利用的白文件☆561Aug 18, 2025Updated last year
- ☆18May 6, 2025Updated last year
- Loader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB…☆93Jul 26, 2025Updated last year
- 白文件patch☆26Aug 14, 2024Updated 2 years ago
- A runtime for developing large-scale and complex PIC module.☆21Sep 15, 2026Updated last week
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆182Aug 3, 2024Updated 2 years ago
- 自动化找白文件,用于扫描 EXE 文件的导入表,列出导入的DLL文件,并筛选出非系统DLL,符合条件的文件将被复制到特定的 X64 或 X86 文件夹☆640Mar 24, 2026Updated 5 months ago
- 利用EFSRPC协议批量探测出网☆66Oct 12, 2023Updated 2 years ago
- ☆98May 26, 2023Updated 3 years ago
- 通过C/C++实现的 Windows RID Hijacking persistence technique (RID劫持 影子账户 账户克隆).☆85Dec 22, 2021Updated 4 years ago
- Silently Install Chrome Extension For Persistence☆102Jul 20, 2024Updated 2 years ago
- ☆148Mar 23, 2025Updated last year
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆101Mar 20, 2023Updated 3 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆30Jan 2, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- 提取域控日志,支持远程提取☆168Mar 17, 2025Updated last year
- Fileless atexec, no more need for port 445☆413Mar 28, 2024Updated 2 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆222Oct 9, 2022Updated 3 years ago
- A little tool to play with Windows security☆12Jan 21, 2026Updated 8 months ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆52Jul 1, 2023Updated 3 years ago
- Basic Psexec clone, but in golang.☆16Jul 2, 2022Updated 4 years ago
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆29Jun 13, 2024Updated 2 years ago