nixpal / shellsiloLinks
SHELLSILO is a cutting-edge tool that translates C syntax into syscall assembly and its corresponding shellcode. It streamlines the process of constructing and utilizing structures, assigning variables, and making system calls. With this tool, integrating strings into your shellcode and initializing Unicode strings has never been easier.
☆141Updated last month
Alternatives and similar repositories for shellsilo
Users that are interested in shellsilo are comparing it to the libraries listed below
Sorting:
- Adversary Emulation Framework☆122Updated 2 months ago
- This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone…☆207Updated 10 months ago
- Stage 0☆164Updated 8 months ago
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆140Updated last year
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆192Updated 9 months ago
- comprehensive .NET tool designed to extract and display detailed information about Windows Defender exclusions and Attack Surface Reducti…☆206Updated last year
- Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener.☆173Updated 6 months ago
- ☆183Updated 2 months ago
- Local & remote Windows DLL Proxying☆165Updated last year
- ☆192Updated 5 months ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆334Updated 2 months ago
- PoC for using MS Windows printers for persistence / command and control via Internet Printing☆148Updated last year
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆153Updated last year
- Port of Cobalt Strike's Process Inject Kit☆184Updated 9 months ago
- ☆157Updated 9 months ago
- Weaponizing DCOM for NTLM Authentication Coercions☆161Updated 2 months ago
- Two in one, patch lifetime powershell console, no more etw and amsi!☆97Updated 4 months ago
- Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.☆155Updated last month
- Evasive Payload Delivery Server & C2 Redirector☆101Updated last month
- .NET Post-Exploitation Utility for Abusing Explicit Certificate Mappings in ADCS☆149Updated 7 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆187Updated 7 months ago
- SOCKS5 proxy tool that uses Azure Blob Storage as a means of communication.☆246Updated 4 months ago
- Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options☆141Updated 5 months ago
- WTSImpersonator utilizes WTSQueryUserToken to steal user tokens by abusing the RPC Named Pipe "\\pipe\LSM_API_service"☆119Updated last year
- Windows Persistence IT-Security☆104Updated 6 months ago
- The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning☆142Updated 5 months ago
- Source generator to add D/Invoke and indirect syscall methods to a C# project.☆183Updated last year
- Red teaming tool to dump LSASS memory, bypassing basic countermeasures.☆232Updated 8 months ago
- Lateral Movement☆124Updated last year
- A Mythic agent for Windows written in C☆134Updated this week