matro7sh / matro7sh_loaders
this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)
☆80Updated last year
Alternatives and similar repositories for matro7sh_loaders:
Users that are interested in matro7sh_loaders are comparing it to the libraries listed below
- Scripts I use to deploy Havoc on Linode and setup categorization and SSL☆39Updated 9 months ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆53Updated last year
- A GUI wrapper inside of Havoc to interact with bloodhound CE☆71Updated last year
- PowerShell Reverse Shell☆61Updated last year
- Duplicate not owned Token from Running Process☆72Updated last year
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆55Updated last year
- ShadowForge Command & Control - Harnessing the power of Zoom's API, control a compromised Windows Machine from your Zoom Chats.☆47Updated last year
- .bin file to shellcode convertor☆33Updated 8 months ago
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆64Updated 9 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆89Updated 9 months ago
- A Havoc UI tool to pivot onto a machine using ligolo-ng☆44Updated last year
- Source code and examples for PassiveAggression☆55Updated 9 months ago
- C++ Staged Shellcode Loader with Evasion capabilities.☆82Updated 5 months ago
- Dump Windows SAM hashes☆41Updated last year
- C# havoc implant☆98Updated 2 years ago
- ☆53Updated 4 months ago
- Situational Awareness script to identify how and where to run implants☆46Updated 3 months ago
- Lateral Movement☆123Updated last year
- Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.☆118Updated 5 months ago
- A C2 framework built for my bachelors thesis☆55Updated 4 months ago
- Inject RDPThief into memory with PowerShell.☆61Updated last month
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆108Updated 11 months ago
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆79Updated 6 months ago
- RDE1 (Rusty Data Exfiltrator) is client and server tool allowing auditor to extract files from DNS and HTTPS protocols written in Rust. �…☆39Updated last year
- ☆83Updated 2 months ago
- Null-AMSI is an AMSI and ETW bypass that takes advantage of .NET types (.NET Reflection) to bypassing AV/EDR.☆42Updated last week
- Adversary Emulation Framework☆91Updated 7 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆83Updated 8 months ago