ricardojoserf / SharpNado
Repository to gather the .NET malware I will be developing
☆18Updated last month
Alternatives and similar repositories for SharpNado:
Users that are interested in SharpNado are comparing it to the libraries listed below
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆61Updated last year
- Proxy function calls through the thread pool with ease☆25Updated 2 months ago
- ☆58Updated 3 months ago
- a simple poc showcasing the ability of an admin to suspend EDR's protected processes , making it useless☆38Updated 9 months ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆62Updated last year
- Shellcode Loader Utilizing ETW Events☆63Updated 2 months ago
- Terms of Use Conditional Access M365 Evilginx Phishlet☆33Updated 3 weeks ago
- Cortex EDR Ransomware protection Bypass☆21Updated 3 months ago
- early cascade injection PoC based on Outflanks blog post, in rust☆58Updated 5 months ago
- Encode shellcode into dictionary words for evasion and entropy reduction☆25Updated 6 months ago
- Rewrite to fit my needs☆27Updated 9 months ago
- Windows Thread Pool Injection Havoc Implementation☆29Updated last year
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆74Updated 8 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆51Updated last year
- A pure C version of SymProcAddress☆27Updated last year
- Just another ntdll unhooking using Parun's Fart technique☆75Updated 2 years ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆48Updated 11 months ago
- PoC to self-delete a binary in C#☆32Updated last year
- A C# Solution Source Obfuscator for avoiding AV signatures with minimal user interaction. Powered by the Roslyn C# library.☆75Updated last month
- converts sRDI compatible dlls to shellcode☆29Updated 3 months ago
- A BOF that suspends non-GUI threads for a target process or resumes them resulting in stealthy process silencing.☆47Updated 3 weeks ago
- Sniffing files generator☆54Updated 2 months ago
- ☆32Updated 8 months ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆70Updated last year
- Rust template/library for implementing your own COFF loader☆50Updated 3 months ago
- ForsHops☆42Updated last month
- Section-based payload obfuscation technique for x64☆59Updated 8 months ago
- These are the slide decks and source code for Brute Ratel Seminar conducted on 24th August 2023. The youtube video for the seminar can be…☆19Updated last year
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆76Updated 2 months ago
- ☆29Updated 4 months ago