magisterquis / alpt4atsLinks
A Lazy Programmer's Tips for Avoiding the SOC ~ BSides Belfast 2024
☆16Updated last year
Alternatives and similar repositories for alpt4ats
Users that are interested in alpt4ats are comparing it to the libraries listed below
Sorting:
- Shellcode reflective DLL injection in Rust☆27Updated 3 weeks ago
- Small utility package for manipulating Windows process tokens☆26Updated 3 years ago
- Load and execute a common object file format (COFF) in the current process☆32Updated last year
- Load a dynamic library from memory using a fuse mount☆31Updated 2 years ago
- A third-party Gopher Assassin for the Havoc Framework.☆44Updated 2 years ago
- Beacon Object Files (not Buffer Overflows)☆58Updated 2 years ago
- A library to parse, modify, and implement Malleable C2 profiles☆27Updated 6 years ago
- A collection of sample code used in some experiments with Sliver C2☆16Updated 2 years ago
- ☆30Updated 3 years ago
- ☆39Updated 3 years ago
- Golang PoC that sandboxes Defender (or other PPL) by setting its token integrity to Untrusted.☆12Updated 7 months ago
- ☆36Updated last year
- all credits go to @mgeeky☆64Updated 4 years ago
- DoublePulsar (Position-Independent) Shellcode (Windows 7 SP1 x64)☆28Updated 5 years ago
- A VSCode devcontainer for development of COFF files with batteries included.☆50Updated 2 years ago
- BOF implementation of Adopt. Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆17Updated 3 years ago
- ☆44Updated 2 years ago
- A VSCode plugin to assist with BOF development.☆37Updated last year
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆41Updated 2 years ago
- Cobalt Strike beacon object file that allows you to query and make changes to the Windows Registry☆30Updated 4 years ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆28Updated 4 years ago
- ☆29Updated last year
- ☆26Updated 3 years ago
- Windows x64 Process Injection via Ghostwriting with Dynamic Configuration☆29Updated 4 years ago
- A library to make HTTP requests with the Windows winhttp API☆24Updated last year
- DLL Exports Extraction BOF with optional NTFS transactions.☆88Updated 4 years ago
- Cobalt Strike Get clipboard plugin☆15Updated 2 years ago
- A .NET implementation to dump SAM, SYSTEM, SECURITY registry hives from a remote host☆40Updated 2 years ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆87Updated 2 years ago
- BYOVD collection☆24Updated last year