Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe
☆13Dec 11, 2023Updated 2 years ago
Alternatives and similar repositories for RunspaceLoader
Users that are interested in RunspaceLoader are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A C# (.NET 6) tool to compare the file signature of files recursively and inform the user of matches and mismatches☆18Nov 29, 2024Updated last year
- This repository will contain source codes from the Tradecraft improvement blog series☆14Mar 27, 2025Updated last year
- Patchless AMSI + ETW bypass via PAGE_GUARD exceptions and Vectored Exception Handler (VEH)☆16Mar 24, 2026Updated 6 months ago
- ☆39Aug 6, 2025Updated last year
- This project will guide yout to awareness of injection in almost every window API and process.☆25Mar 30, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Windows Thread Pool Injection Havoc Implementation☆35Mar 23, 2024Updated 2 years ago
- Modules designed to be used with the Conquest framework.☆22Sep 3, 2026Updated last month
- Panoptes Endpoint Detection and Response Solution☆45Mar 7, 2026Updated 7 months ago
- ☆58Feb 16, 2025Updated last year
- ☆60Dec 15, 2023Updated 2 years ago
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- miscellaneous codes☆38Sep 24, 2023Updated 3 years ago
- Convert shellcode generated using pe_2_shellcode to cdb format.☆99Jan 18, 2022Updated 4 years ago
- Execute shellcode from a remote-hosted bin file using Winhttp.☆235Jun 22, 2023Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- PowerShell tool to enumerate existing exclusions in Windows Defender as low privileged user☆12Oct 14, 2024Updated last year
- A static analyzer for PE executables.☆18Nov 19, 2021Updated 4 years ago
- ☆10Jul 1, 2023Updated 3 years ago
- Windows frontend for digging SSH tunnels and creating socks proxies☆12Nov 19, 2023Updated 2 years ago
- CIA UAC bypass implementation of Stinger that obtains the token from an auto-elevated process, modifies it, and reuses it to execute as A…☆301Feb 2, 2026Updated 8 months ago
- A list of commands, tools and notes about enumerating and exploiting Active Directory and how to defend against these attacks☆23Jun 22, 2021Updated 5 years ago
- Bulk export spaces from GitBook to markdown☆20Mar 10, 2025Updated last year
- Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies☆125May 29, 2024Updated 2 years ago
- ☆13Feb 20, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Process hunting Toolkit is toolkit capable of hunting down malicious processes on Windows☆14Jan 31, 2025Updated last year
- ☆27Jun 3, 2023Updated 3 years ago
- SafeHarbor revamped with Direct Syscalls using InlineWhispers3☆14Feb 16, 2026Updated 7 months ago
- Terminate AV/EDR processes by exploiting the vulnerable NsecSoft driver☆31Sep 15, 2025Updated last year
- Stub for polymorphic code☆11Mar 18, 2023Updated 3 years ago
- An executable that simplifies adding the msds-AllowedToActOnBehalfOfOtherIdentity attribute for RBCD☆49Mar 10, 2025Updated last year
- Hide your P/Invoke signatures through other people's signed assemblies☆215Mar 10, 2024Updated 2 years ago
- This is my own implementation of the Perun's Fart technique by Sektor7☆72May 14, 2022Updated 4 years ago
- Creation and removal of Defender path exclusions and exceptions in C#.☆30Nov 1, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- HackSys Extreme Vulnerable Driver - StackOverflow Exploit☆32Jan 9, 2017Updated 9 years ago
- Abuse leaked token handles.☆135Dec 14, 2023Updated 2 years ago
- No longer maintained. Timing attacks on a browsers cache to try to predict websites/subreddits that have been viewed☆13Sep 25, 2026Updated 2 weeks ago
- ☆11Feb 12, 2023Updated 3 years ago
- A python polymorphic engine for C programs☆11Dec 8, 2023Updated 2 years ago
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆41Jul 9, 2023Updated 3 years ago
- CopyReadProcessMemory expoits the miss-configuration/vulnerability present on the API Windows method ReadProcessMemory.☆34Nov 27, 2025Updated 10 months ago