Just another casual shellcode native loader
☆24Feb 3, 2022Updated 4 years ago
Alternatives and similar repositories for RTImplant
Users that are interested in RTImplant are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- UUID based Shellcode loader for your favorite C2☆86Dec 8, 2021Updated 4 years ago
- One gate to all syscalls!☆23Mar 12, 2022Updated 4 years ago
- FrostByte is a POC project that combines different defense evasion techniques to build better redteam payloads☆383Apr 16, 2022Updated 4 years ago
- It stinks☆101Apr 22, 2022Updated 4 years ago
- Executes shellcode from a remote server and aims to evade in-memory scanners☆31Nov 17, 2019Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A PoC project for embedding shellcode to Hint/Name Table☆114Apr 4, 2026Updated 3 months ago
- JALSI - Just Another Lame Shellcode Injector☆30Aug 1, 2021Updated 4 years ago
- NimicStack is the pure Nim implementation of Call Stack Spoofing technique to mimic legitimate programs☆95Apr 4, 2026Updated 3 months ago
- Collection of CobaltStrike beacon object files☆105Feb 14, 2022Updated 4 years ago
- A repository filled with ideas to break/detect direct syscall techniques☆26Apr 21, 2022Updated 4 years ago
- A custom run space to bypass AMSI and Constrained Language mode in PowerShell.☆20May 17, 2023Updated 3 years ago
- Collection of shellcode injection and execution techniques☆17Mar 17, 2026Updated 4 months ago
- ☆24Oct 18, 2022Updated 3 years ago
- Cobalt Strike BOF to list Windows Pipes & return their Owners & DACL Permissions☆98Mar 8, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Attack chain emulator. Write recipes for initial access easily☆24Feb 26, 2025Updated last year
- A small POC to make defender useless by removing its token privileges and lowering the token integrity☆691Jun 28, 2022Updated 4 years ago
- Malware persistence via COM DLL hijacking. C++ implementation example☆15May 2, 2022Updated 4 years ago
- ☆210Mar 22, 2021Updated 5 years ago
- Self Delete DLL☆22Feb 15, 2024Updated 2 years ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆68May 11, 2023Updated 3 years ago
- Inject a shellcode in a remote process using Process Hollowing.☆54Sep 18, 2021Updated 4 years ago
- R3劫持所有异常☆14Jan 4, 2021Updated 5 years ago
- ☆84Aug 26, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆64Jan 2, 2024Updated 2 years ago
- Shellcode Loader Implementing Indirect Dynamic Syscall , API Hashing, Fileless Shellcode retrieving using Winsock2☆13Jul 15, 2023Updated 3 years ago
- A Nemesis powered Retrieval-Augmented Generation (RAG) chatbot proof-of-concept.☆70Aug 4, 2025Updated 11 months ago
- A Fully undetectable electron application exploit☆16Oct 27, 2021Updated 4 years ago
- SyscallLoader☆11Sep 13, 2021Updated 4 years ago
- Collection of self-made Red Team tools that have come in handy☆12Aug 25, 2024Updated last year
- Hijack Printconfig.dll to execute shellcode☆103Jan 15, 2021Updated 5 years ago
- ☆10Apr 19, 2026Updated 3 months ago
- ☆113Aug 5, 2020Updated 5 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Load shellcode via HELLGATE, Rewrite hellgate with .net framework for learning purpose.☆16Jan 21, 2022Updated 4 years ago
- Experiments on the Windows Internals☆31Sep 22, 2019Updated 6 years ago
- A simple program to hook the current process to identify the manual syscall executions on windows☆266Nov 18, 2022Updated 3 years ago
- A framework for backdooring Microsoft Nuget packages.☆10Jan 9, 2024Updated 2 years ago
- A *very* imperfect attempt to correlate Kernel32 function calls to native API (Nt/Zw) counterparts/execution flow.☆28Dec 16, 2021Updated 4 years ago
- Cobalt Strike Aggressor Script that Performs System/AV/EDR Recon☆339Jun 6, 2022Updated 4 years ago
- ☆13Jul 30, 2021Updated 4 years ago