In-memory BOF implementation of Silent Process Exit LSASS dump via RtlReportSilentProcessExit
☆19Apr 14, 2026Updated 5 months ago
Alternatives and similar repositories for WerWolf
Users that are interested in WerWolf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- One PsExec client to rule them all☆15Mar 25, 2026Updated 6 months ago
- ⚡ SheetStrike - Weaponize Excel files for red team operations. Inject stealthy tracking pixels and NTLMv2 hash capture payloads into XLSX…☆22Dec 23, 2025Updated 9 months ago
- PoC for CVE-2026-3609 - XIGNCODE3 xhunter1.sys handle leak enabling PPL bypass and LSASS dumping☆37May 12, 2026Updated 4 months ago
- Ported from [LACUNA Chain](https://github.com/MazX0p/LACUNA-Chain) by Mohamed Alzhrani (0xmaz). lacuna-rs is a reusable Rust crate that …☆19Jul 2, 2026Updated 3 months ago
- A simple OAuth App designed to capture OAuth tokens when users authenticate through GitHub OAuth flow.☆27Apr 20, 2026Updated 5 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- AdaptixC2 default beacon agent extended to support Crystal Palace loaders.☆63May 4, 2026Updated 5 months ago
- Bypassing EDR's with stealthy c++ telegram Bot and Telegram itself as C2 interface !☆44Mar 24, 2026Updated 6 months ago
- psexec-like remote execution using the paexec wire protocol that supports paexec and remoteexecm2 from manageengine adselfservice plus☆44Mar 24, 2026Updated 6 months ago
- Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse☆43May 27, 2026Updated 4 months ago
- Safe Harbor is a BOF that streamlines process reconnaissance for red team operations by identifying trusted, low-noise targets to maintai…☆82Oct 27, 2025Updated 11 months ago
- A Proof of Concept demonstrating CET-compliant callstack spoofing in Rust. It leverages Windows Thread Pool and Enum Callback trampolinin…☆65Jul 12, 2026Updated 2 months ago
- Tailscale/Headscale C2 profile and agent for Mythic☆34Mar 14, 2026Updated 6 months ago
- Tyche is a Mythic HTTPX Profile Generator used to create Malleable C2 Profiles.☆58Mar 28, 2026Updated 6 months ago
- Modular User-Defined Reflective Loader (UDRL) built on Crystal Palace for controlled DLL execution and evasion research.☆35Apr 14, 2026Updated 5 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A collection of DPAPI hunting and parsing BOFs☆39Mar 3, 2026Updated 7 months ago
- Evasive shellcode loader for Red Teaming☆18Aug 15, 2025Updated last year
- A modern alternative Web-UI for the Mythic Command and Control Server☆83Jul 3, 2026Updated 3 months ago
- Echos is a stealthy C2 traffic emulator built in Rust for Red Teamers. It simulates adversarial beaconing patterns and custom jitter to t…☆33Jul 28, 2026Updated 2 months ago
- BAADTokenBroker is a post-exploitation tool designed to interact with Microsoft Entra ID device-bound keys.☆82Apr 11, 2026Updated 5 months ago
- Adaptix C2 service plugin that drives LitterBox payload analysis from the operator UI.☆66May 4, 2026Updated 5 months ago
- dcsync bof☆52Feb 13, 2026Updated 7 months ago
- Rust Armory - Cobalt Strike Beacon Object Files (BOFs) in Rust for situational awareness, remote operations, and post-exploitation tradec…☆72Sep 17, 2026Updated 2 weeks ago
- Evasive loader for .NET Framework assemblies☆51May 14, 2026Updated 4 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Kassandra is a custom Mythic C2 agent written in Rust, containerized via a Python-based builder☆24Jul 31, 2026Updated 2 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆60Jul 4, 2026Updated 3 months ago
- ☆44Jul 1, 2026Updated 3 months ago
- A different approach to writing BOFs in rust.☆21Aug 20, 2025Updated last year
- NTLM Relaying to generic web services with NTLM authentication☆83Mar 20, 2026Updated 6 months ago
- open source port/reimplementation of the Cobalt Strike BOF Loader as is☆73Mar 8, 2026Updated 6 months ago
- some research on EDR deconditioning☆16Jun 4, 2026Updated 4 months ago
- A practical client for ADWS in Golang.☆56Aug 5, 2026Updated 2 months ago
- Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.☆103Dec 15, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Chisel new generation, written in rust. SSH under WSS with some customization.☆135Jan 24, 2026Updated 8 months ago
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆319Aug 31, 2026Updated last month
- Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys…☆83Jul 21, 2026Updated 2 months ago
- Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by …☆282Apr 16, 2026Updated 5 months ago
- A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.☆167Apr 15, 2026Updated 5 months ago
- Blind AV solutions by setting firewall rules to block outgoing connections☆16Jun 9, 2024Updated 2 years ago
- A Native Bash Framework for Kerberos Ticket Extraction on Linux 🔐☆47Feb 23, 2026Updated 7 months ago