Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
☆76Mar 16, 2026Updated 4 months ago
Alternatives and similar repositories for donut_ollvm
Users that are interested in donut_ollvm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆31Oct 23, 2023Updated 2 years ago
- A tool for automatic patch shellcode into binary file to bypass AV. / 一个自动patch shellcode到二进制文件的工具☆579Updated this week
- 主要用于隐藏进程真实路径,进程带windows真签名☆120Oct 15, 2024Updated last year
- Simulate per-process disconnection in red team environments☆114Jun 6, 2025Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆208May 28, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Get sql server connection configuration information☆28Aug 26, 2024Updated last year
- Golang implement winrm client with pass the hash☆32Apr 29, 2024Updated 2 years ago
- 一种通过进程注入实现强制关闭部分杀软进程的方法(以360安全卫士和360杀毒为例)☆139Dec 26, 2023Updated 2 years ago
- 一款基于PE Patch技术的后渗透免杀工具,主要支持x64☆351Mar 5, 2025Updated last year
- Take a screenshot without injection for Cobalt Strike☆205Jun 7, 2023Updated 3 years ago
- 复现《EDR的梦魇:Storm-0978使用新型内核注入技术“Step Bear”》☆164Oct 27, 2024Updated last year
- 添加计划任务方法集合☆316Aug 6, 2023Updated 2 years ago
- A BOF/COFF loader implemented in Go and CGO.☆23Jan 16, 2024Updated 2 years ago
- vehsyscall:a syscall project that may bypass EDR☆62Mar 1, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- 向日葵 密码提取工具☆14Sep 10, 2024Updated last year
- can convert EXE/DLL into position-independent shellcode☆51Updated this week
- 使用Visral Studio开发ShellCode☆247Oct 11, 2023Updated 2 years ago
- CVE-2020-1472 C++☆84Sep 2, 2022Updated 3 years ago
- 寻找可利用的白文件☆563Aug 18, 2025Updated 11 months ago
- ☆18May 6, 2025Updated last year
- Loader Pre-Technology, Main thread hijacking without using API, get ntdll and kernel32 handle without peb. 加载器前置技术,不使用API进行主线程劫持,不使用PEB…☆93Jul 26, 2025Updated 11 months ago
- 白文件patch☆27Aug 14, 2024Updated last year
- A runtime for developing large-scale and complex shellcode.☆21Updated this week
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆184Aug 3, 2024Updated last year
- 自动化找白文件,用于扫描 EXE 文件的导入表,列出导入的DLL文件,并筛选出非系统DLL,符合条件的文件将被复制到特定的 X64 或 X86 文件夹☆634Mar 24, 2026Updated 4 months ago
- 利用EFSRPC协议批量探测出网☆67Oct 12, 2023Updated 2 years ago
- ☆97May 26, 2023Updated 3 years ago
- ☆126Mar 23, 2025Updated last year
- 通过C/C++实现的 Windows RID Hijacking persistence technique (RID劫持 影子账户 账户克隆).☆88Dec 22, 2021Updated 4 years ago
- Silently Install Chrome Extension For Persistence☆102Jul 20, 2024Updated 2 years ago
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆103Mar 20, 2023Updated 3 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆30Jan 2, 2025Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- 提取域控日志,支持远程提取☆170Mar 17, 2025Updated last year
- Fileless atexec, no more need for port 445☆413Mar 28, 2024Updated 2 years ago
- Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.☆220Oct 9, 2022Updated 3 years ago
- A little tool to play with Windows security☆12Jan 21, 2026Updated 6 months ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆55Jul 1, 2023Updated 3 years ago
- Basic Psexec clone, but in golang.☆17Jul 2, 2022Updated 4 years ago
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆29Jun 13, 2024Updated 2 years ago