raykaryshyn / FakeTLS
Client/server code that impersonates TLS 1.3 to disguise C2 activity.
☆65Updated 2 years ago
Alternatives and similar repositories for FakeTLS:
Users that are interested in FakeTLS are comparing it to the libraries listed below
- bring your own vulnerable driver☆91Updated last year
- ☆112Updated 2 years ago
- An implementation of an indirect system call☆120Updated last year
- Beacon compiled using clang☆63Updated 2 years ago
- Load static-compiled PE from remote server.☆59Updated 3 years ago
- ☆94Updated 2 years ago
- Windows Defender VDM lua collections☆47Updated 2 years ago
- Windows API Call Obfuscation☆99Updated 2 years ago
- A basic C2 framework written in C☆59Updated 8 months ago
- ☆161Updated 3 years ago
- Minimal PoC developed as discuss in https://captmeelo.com/redteam/maldev/2022/05/10/ntcreateuserprocess.html☆131Updated 2 years ago
- ☆47Updated 2 years ago
- Simple windows rpc server for research purposes only☆82Updated 2 years ago
- A PoC implementation for dynamically masking call stacks with timers.☆267Updated 2 years ago
- ☆135Updated 2 years ago
- XOR decrypting shellcode using the GPU with OpenCL.☆94Updated last year
- Windows PE - TLS (Thread Local Storage) Injector in C/C++☆105Updated 4 years ago
- DLL Hollowing PoC - Remote and Self shellcode injection☆77Updated 3 years ago
- It stinks☆101Updated 2 years ago
- C2☆88Updated last month
- Loading Fileless Remote PE from URI to memory with argument passing and ETW patching and NTDLL unhooking and No New Thread technique☆62Updated 2 years ago
- Cobalt Strike User Defined Reflective Loader (UDRL). Check branches for different functionality.☆137Updated 2 years ago
- Shellcode implementation of Reflective DLL Injection by Golang. Convert DLLs to position independent shellcode☆58Updated 3 years ago
- a library that automates some clean syscalls to make it easier to implement☆84Updated 2 years ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆62Updated last year
- Evasive loader to bypass static detection☆57Updated last year
- ☆78Updated last year
- shellcode-loaders and beacon-loaders☆64Updated last year
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆71Updated last year
- Implementation of Indirect Syscall technique to pop a calc.exe☆98Updated last year