A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes.
☆276Sep 23, 2025Updated 10 months ago
Alternatives and similar repositories for BamboozlEDR
Users that are interested in BamboozlEDR are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Collect Windows telemetry for Maldev☆500Updated this week
- .NET tool used to enrich RPC telemetry☆103Jan 24, 2026Updated 6 months ago
- Lateral movement with DCOM DLL hijacking☆182Jul 4, 2025Updated last year
- Moonwalk++: Simple POC Combining StackMoonwalking and Memory Encryption☆234Dec 17, 2025Updated 8 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆174Sep 30, 2025Updated 10 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- This is the loader that supports running a program with Protected Process Light (PPL) protection functionality.☆304May 23, 2026Updated 2 months ago
- Cobalt Strike UDC2 implementation that provides an Slack C2 channel☆69Jan 5, 2026Updated 7 months ago
- DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely☆393Dec 13, 2024Updated last year
- Local SYSTEM auth trigger for relaying - X☆160Jul 23, 2025Updated last year
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆460Jun 27, 2025Updated last year
- A Beacon Object File (BOF) that talks directly to Windows authentication packages through the LSA untrusted/trusted client interface, wit…☆298Feb 21, 2026Updated 5 months ago
- Windows protocol library, including SMB and RPC implementations, among others.☆825Aug 5, 2026Updated last week
- Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniques☆131Dec 28, 2025Updated 7 months ago
- Two tools written in C that block network traffic for blacklisted EDR processes, using either Windows Defender Firewall (WDF) or Windows …☆268Sep 23, 2025Updated 10 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆240May 23, 2026Updated 2 months ago
- A BOF that's a BOF Loader and more☆211Apr 6, 2026Updated 4 months ago
- Windows Session Hijacking via COM☆349Dec 13, 2025Updated 8 months ago
- A tool to transform Chromium browsers into a C2 Implant☆597Dec 17, 2025Updated 8 months ago
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆363Updated this week
- Gain insights into MS-RPC implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By f…☆348May 4, 2026Updated 3 months ago
- An example reference design for a proposed BOF PE☆238Jan 23, 2026Updated 6 months ago
- Lightweight binary that joins a device to a Tailscale network and exposes a local SOCKS5 proxy. Designed for red team operations and ephe…☆571Oct 3, 2025Updated 10 months ago
- AppLocker-Based EDR Neutralization☆341Dec 19, 2025Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A tool designed for smuggling interactive command and control traffic through legitimate TURN servers hosted by reputable providers such …☆433Jun 9, 2026Updated 2 months ago
- A PowerShell console in C/C++ with all the security features disabled☆393Oct 14, 2025Updated 10 months ago
- Cobalt Strike BOF for evasive .NET assembly execution☆327Mar 31, 2025Updated last year
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆164Nov 23, 2025Updated 8 months ago
- Toolset to manipulate RPC clients by finding delayed services and masquerading as them☆114Apr 28, 2026Updated 3 months ago
- C2-agnostic BOF collection, categorized by attack chain phase. Designed to be small and modular, allowing for quick execution and automat…☆312Updated this week
- Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan …☆217Dec 8, 2025Updated 8 months ago
- The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencie…☆182Sep 3, 2025Updated 11 months ago
- EDRStartupHinder: A red team tool to prevent Antivirus and EDR from running.☆195May 23, 2026Updated 2 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- One WSL BOF to rule them all☆190Jan 14, 2026Updated 7 months ago
- Obex – Blocking unwanted DLLs in user mode☆281Sep 18, 2025Updated 11 months ago
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆220Feb 6, 2025Updated last year
- ☆194Oct 21, 2025Updated 9 months ago
- Proof of Concepts code for Bring Your Own Vulnerable Driver techniques☆243Aug 21, 2025Updated 11 months ago
- Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.☆641Feb 2, 2026Updated 6 months ago
- Lateral Movement as loggedon User via Speech Named Pipe COM & ISpeechNamedPipe + COM Hijacking☆150Jul 2, 2025Updated last year