iDigitalFlame / ThunderStormLinks
Golang C2 Server and Agents using XMT (https://github.com/iDigitalFlame/xmt)
☆37Updated 8 months ago
Alternatives and similar repositories for ThunderStorm
Users that are interested in ThunderStorm are comparing it to the libraries listed below
Sorting:
- Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog …☆82Updated last year
- C# havoc implant☆101Updated 2 years ago
- Example code samples from our ScriptBlock Smuggling Blog post☆91Updated last year
- Small project to facilitate creation of .lnk payloads☆70Updated 2 years ago
- Command and Control (C2) framework☆127Updated 2 months ago
- ☆68Updated 2 months ago
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆98Updated 2 years ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated 2 years ago
- Identifies bad bytes from static analysis with any Anti-Virus scanner.☆124Updated last year
- ☆56Updated last year
- A collection of various and sundry code snippets that leverage .NET dynamic tradecraft☆142Updated last year
- ☆167Updated 11 months ago
- Your syscall factory☆123Updated 3 weeks ago
- Simple .NET loader for loading and executing Powershell payloads☆17Updated 3 years ago
- Lateral Movement via the .NET Profiler☆82Updated 7 months ago
- Stealthier variation of Module Stomping and Module Overloading injection techniques that reduces memory IoCs. Implemented in Python ctype…☆118Updated last year
- a variety of tools,scripts and techniques developed and shared with different programming languages by 0xsp Lab☆63Updated 6 months ago
- This project is an implant framework designed for long term persistent access to Windows machines.☆110Updated last year
- ☆107Updated 5 months ago
- Dropping a powershell script at %HOMEPATH%\Documents\WindowsPowershell\ , that contains the implant's path , and whenever powershell pro…☆85Updated last year
- Find .net assemblies locally☆117Updated 2 years ago
- Nim process hollowing loader☆57Updated 11 months ago
- Nim Payload Generation☆61Updated last year
- Python module for running BOFs☆71Updated last year
- Simple EDR that injects a DLL into a process to place a hook on specific Windows API☆93Updated last year
- (Demo) 3rd party agent for Havoc☆140Updated last year
- Utilities for obfuscating shellcode☆69Updated 4 months ago
- ☆90Updated last year
- Useful Cobalt Strike Beacon Object Files (BOFs) used during red teaming and penetration testing engagements.☆115Updated 3 years ago
- A tool to modify SCCM remote control settings on the client machine, enabling remote control without permission prompts or notifications.…☆94Updated 8 months ago