san3ncrypt3d / AESShellCodeInjector
This program will take encrypted shell code and decrypt it in run time and inject it into another process
☆29Updated 2 years ago
Alternatives and similar repositories for AESShellCodeInjector:
Users that are interested in AESShellCodeInjector are comparing it to the libraries listed below
- This is a CS project that will encrypt shell code from msfvenom using AES☆22Updated 2 years ago
- ☆56Updated 4 years ago
- Depending on the AV/EPP/EDR creating a Taskschedule Job with a default cradle is often flagged☆86Updated 2 years ago
- C# havoc implant☆98Updated 2 years ago
- Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog …☆79Updated last year
- Active Directory certificate abuse.☆37Updated 3 years ago
- UI for creating LNKs☆96Updated 3 years ago
- Simple HTTP async comms using standard GET/POST requests☆30Updated 3 months ago
- Alternative Shellcode Execution Via Callbacks in C# with P/Invoke☆76Updated last year
- Simple .NET loader for loading and executing Powershell payloads☆16Updated 3 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆53Updated 3 years ago
- PoC-Malware-TTPs☆49Updated last year
- C# implementation of Get-AADIntSyncCredentials from AADInternals, which extracts Azure AD Connect credentials to AD and Azure AD from AAD…☆39Updated last year
- Golng version of SharpDump that can be used to extract LSASS or any other proces. Provides token elevation prior to creating dump of high…☆21Updated 4 years ago
- Modified versions of the Cobalt Strike Process Injection Kit☆92Updated last year
- Using syscall to load shellcode, Evasion techniques☆27Updated 3 years ago
- .NET project for installing Persistence☆64Updated 3 years ago
- This is my own implementation of the Perun's Fart technique by Sektor7☆68Updated 2 years ago
- ☆139Updated 2 years ago
- Active Directory certificate abuse☆33Updated 2 years ago
- Automating payload generation for OSEP labs and exam.☆34Updated 2 years ago
- ☆36Updated 2 years ago
- Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes☆101Updated last year
- ProcExp Driver (Ab)use☆20Updated 2 years ago
- ☆55Updated 10 months ago
- ☆16Updated 4 months ago
- ☆39Updated 2 years ago
- Tool to start processes as SYSTEM using token duplication☆38Updated 4 years ago
- ☆61Updated 2 years ago
- a short C code POC to gain persistence and evade sysmon event code registry (creation, update and deletion) REG_NOTIFY_CLASS Registry Cal…☆51Updated last year