An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.
☆35May 8, 2026Updated 4 months ago
Alternatives and similar repositories for nanostorm
Users that are interested in nanostorm are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- rekk is set of tools written in Rust to obfuscate ELF & PE executables with nanomites.☆32Dec 15, 2024Updated last year
- ☆15Jan 15, 2026Updated 8 months ago
- Event Tracing for Windows EDR bypass in Rust (usermode)☆39Jun 9, 2024Updated 2 years ago
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆28Jul 23, 2026Updated 2 months ago
- Windows Portable Device COM BOF☆17Mar 30, 2026Updated 5 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A simple OAuth App designed to capture OAuth tokens when users authenticate through GitHub OAuth flow.☆27Apr 20, 2026Updated 5 months ago
- Sleep replacement that executes real, varied work to break behavioral pattern matching by EDR and anti-cheat systems☆82Jul 20, 2026Updated 2 months ago
- PwnRM is an operator-grade Active Directory post-exploitation platform engineered directly upon the native Microsoft PowerShell Remoting …☆94Sep 4, 2026Updated 2 weeks ago
- A Beacon Object File (BOF) that performs the complete ESC1 attack chain in a single execution: certificate request with arbitrary SAN (+S…☆118Dec 21, 2025Updated 9 months ago
- Rust malware EDR evasion via direct syscalls, fully implemented as an example in Rust☆93Jun 4, 2024Updated 2 years ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 5 months ago
- SafeHarbor revamped with Direct Syscalls using InlineWhispers3☆14Feb 16, 2026Updated 7 months ago
- Cobalt Strike BOF☆58Dec 10, 2025Updated 9 months ago
- Alternative Read and Write primitives using Rtl* functions the unintended way.☆78Aug 25, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Bypassing AV, EDR, Application Whitelisting and ASR Rules☆13Apr 18, 2023Updated 3 years ago
- A malware development library written in rust.☆15May 16, 2026Updated 4 months ago
- Bof of RegPwn by MDSec☆129Mar 15, 2026Updated 6 months ago
- EDRUnChoker - fileless WMI defense that removes EDRChoker QoS throttling policies☆48Jun 8, 2026Updated 3 months ago
- Hides in your attic... I mean process☆26Apr 29, 2026Updated 4 months ago
- Call Stack Spoofing for Rust☆219Jan 28, 2026Updated 7 months ago
- Updated version of a long known self deletion technique to work with 24H2.☆61Jun 9, 2025Updated last year
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆80Dec 23, 2023Updated 2 years ago
- A synergized Visual Studio and Rust development environment☆17Jan 25, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- One WSL BOF to rule them all☆189Jan 14, 2026Updated 8 months ago
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆55Mar 30, 2026Updated 5 months ago
- use python on windows with full submodule support without installation☆30Jan 23, 2025Updated last year
- C2 Agent fully PIC for Mythic with advanced evasion capabilities, dotnet/powershell/shellcode/bof memory executions, lateral moviments, p…☆216Dec 30, 2025Updated 8 months ago
- A PoC UDRL for Cobalt Strike built with Crystal Palace that combines Raphael Mudge's page streaming technique with a modular call gate (D…☆139Jan 21, 2026Updated 8 months ago
- Step through PE functions or shellcode instruction-by-instruction (amd64)☆42May 4, 2026Updated 4 months ago
- Language extension for Crystal Palace Specification files☆14Jun 6, 2026Updated 3 months ago
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆51Jul 23, 2026Updated 2 months ago
- A tool to easily perform GitLab Device Code Phishing on red team engagements☆51Feb 9, 2026Updated 7 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- open source implementation of the UDC2 spec used in Cobalt Strike☆59Jul 4, 2026Updated 2 months ago
- Small utility script to notify via Slack about Hashcat's progress during a password cracking session☆10Mar 10, 2019Updated 7 years ago
- 在cobaltstrike中使用的bof工具集,收集整理验证好用的bof。☆17Sep 30, 2021Updated 4 years ago
- C# to read WIM files over the network without transferring the whole file☆39Jan 22, 2026Updated 8 months ago
- Tailscale/Headscale C2 profile and agent for Mythic☆34Mar 14, 2026Updated 6 months ago
- Evasive shellcode loader for Red Teaming☆18Aug 15, 2025Updated last year
- A simple website to act as a store for havoc modules and extensions☆30Jan 20, 2025Updated last year