rbmm / SC_DEMOLinks
☆125Updated last month
Alternatives and similar repositories for SC_DEMO
Users that are interested in SC_DEMO are comparing it to the libraries listed below
Sorting:
- ☆123Updated 11 months ago
- ForsHops☆152Updated 9 months ago
- Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective☆162Updated last week
- ☆138Updated last year
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆194Updated last year
- ☆137Updated 2 months ago
- Lateral movement with DCOM DLL hijacking☆176Updated 6 months ago
- ☆159Updated last year
- A Mythic agent for Windows written in C☆151Updated last week
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆119Updated 6 months ago
- Evasion kit for Cobalt Strike☆358Updated 3 weeks ago
- BOF with Synthetic Stackframe☆212Updated 2 months ago
- 🧠 The ultimate, community-curated resource for Beacon Object Files (BOFs) — tutorials, how-tos, deep dives, and reference materials.☆95Updated last month
- BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)☆195Updated 11 months ago
- Beacon Object File (BOF) to obtain Entra tokens via authcode flow.☆113Updated this week
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆152Updated this week
- COM-based DLL Surrogate Injection☆140Updated last month
- An App Domain Manager Injection DLL PoC on steroids☆210Updated 2 years ago
- Reflective shellcode loaderwith advanced call stack spoofing and .NET support.☆224Updated 4 months ago
- ☆126Updated last year
- Robust Cobalt Strike shellcode loader with multiple advanced evasion features☆198Updated 8 months ago
- Early Bird Cryo Injections – APC-based DLL & Shellcode Injection via Pre-Frozen Job Objects☆135Updated 9 months ago
- ☆142Updated 2 months ago
- load shellcode without P/D Invoke and VirtualProtect call.☆164Updated 4 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆141Updated 3 months ago
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆278Updated last year
- C2 Agent fully PIC for Mythic with advanced evasion capabilities, dotnet/powershell/shellcode/bof memory executions, lateral moviments, p…☆193Updated 3 weeks ago
- Proof of Concepts code for Bring Your Own Vulnerable Driver techniques☆202Updated 5 months ago
- AppLocker-Based EDR Neutralization☆272Updated last month
- A hoontr must hoont☆101Updated last month