huoji120 / CobaltStrikeDetectedLinks
40行代码检测到大部分CobaltStrike的shellcode
☆289Updated 4 years ago
Alternatives and similar repositories for CobaltStrikeDetected
Users that are interested in CobaltStrikeDetected are comparing it to the libraries listed below
Sorting:
- Windows对抗沙箱和虚拟机的方法总结☆399Updated 5 years ago
- 利用图片隐写术来远程动态加载shellcode☆97Updated 2 years ago
- 汇总了目前可以找到的所有的进程注入的方式,完成了x86/x64下的测试,不断更新中☆279Updated 3 years ago
- SysEye是一个window上的基于att&ck现代EDR设计思想的威胁响应工具.有效检测常见的未知威胁与已知威胁.防守方的利剑☆63Updated 2 years ago
- 有需求做攻防对抗,买本书学习下常见技术,例子敲一敲☆224Updated 4 years ago
- ☆155Updated last year
- 绕3环的shellcode免杀框架☆574Updated 4 years ago
- source code☆183Updated 6 years ago
- 利用白名单文件 cdb.exe 执行 shellcode☆214Updated 3 years ago
- Linux下用于远程加载可执行文件以达到内存加载的目的☆202Updated 2 years ago
- CobaltStrikeDetect☆49Updated last month
- 通过反射DLL注入、Win API、C#、以及底层实现NetUserAdd方式实现BypassAV进行增加用户的功能,实现Cobalt Strike插件化☆339Updated 3 years ago
- 🔥开源跨平台轻量级病 毒特征检测引擎。Open source cross-platform lightweight virus signature detection engine.👍👍👍☆52Updated 2 years ago
- 一款基于Http.sys的利用工具☆191Updated 2 years ago
- A tool for quickly generating fishing Trojan horse.☆97Updated 3 years ago
- 沙箱测试,测评国内常见沙箱的代码与结论☆103Updated 4 years ago
- golang打包二进制进行免杀☆232Updated 4 years ago
- 破解CS4.0☆162Updated 5 years ago
- 关于RPC一些绕EDR的tips☆190Updated 2 years ago
- 通杀检测基于白文件patch黑代码的免杀技术的后门☆173Updated last year
- 远程创建任务计划工具☆188Updated 3 years ago
- 基于Golang实现的Shellcode内存加载器,共实现3中内存加载shellcode方式,UUID加载,MAC加载和IPv4加载,目前能过主流杀软(包括Windows Defender)☆254Updated 3 years ago
- 使用Visral Studio开发ShellCode☆207Updated last year
- dump lsass进程工具☆556Updated 2 years ago
- Beacon.dll reverse☆140Updated 3 years ago
- Cobalt Strike 二开项目☆184Updated 2 years ago
- 将dll exe 等转成shellcode 最后输出exe 可定制加载器模板 支持白文件的捆绑 shellcode 加密☆365Updated 2 years ago
- ☆151Updated 4 years ago
- ☆18Updated 3 years ago
- Blog☆73Updated 2 years ago