scriptchildie / goEkkoLinks
Sleep obfuscation in golang based on ekko
☆13Updated last year
Alternatives and similar repositories for goEkko
Users that are interested in goEkko are comparing it to the libraries listed below
Sorting:
- Internal Monologue BOF☆79Updated 10 months ago
- ☆126Updated last year
- AzureAD beacon object files☆131Updated 11 months ago
- Mockingjay process self injection POC☆42Updated 2 years ago
- Lateral Movement via the .NET Profiler☆84Updated last year
- ForsHops☆150Updated 7 months ago
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆69Updated last year
- Lateral movement with DCOM DLL hijacking☆167Updated 4 months ago
- Spawns a process from a process. Can sometimes be used to run a session > 0 process from session 0.☆19Updated 3 years ago
- Simple BOF to read the protection level of a process☆119Updated 2 years ago
- Find DLLs with RWX section☆80Updated 2 years ago
- Local SYSTEM auth trigger for relaying - X☆153Updated 3 months ago
- Bypass user-land hooks by syscall tampering via the Trap Flag☆132Updated 2 months ago
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆118Updated last year
- ☆135Updated 10 months ago
- A process injection technique using only thread context manipulation☆39Updated last year
- A hoontr must hoont☆101Updated 3 months ago
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆117Updated 4 months ago
- ☆136Updated 9 months ago
- ☆120Updated 9 months ago
- Unauthenticated start EFS service on remote Windows host (make PetitPotam great again)☆117Updated 3 weeks ago
- WTSImpersonator utilizes WTSQueryUserToken to steal user tokens by abusing the RPC Named Pipe "\\pipe\LSM_API_service"☆121Updated last year
- Lateral Movement Bof with MSI ODBC Driver Install☆136Updated last month
- ☆84Updated 10 months ago
- Embedder is a collection of sources in different languages to embed Python interpreter with minimal dependencies☆121Updated last year
- ☆122Updated 2 years ago
- Implant drop-in for EDR testing☆146Updated 2 years ago
- Sliver extension performing TCP redirection tasks without performing cross-process injection.☆68Updated 10 months ago
- The DCERPC only printerbug.py version☆161Updated 3 weeks ago
- ☆159Updated 11 months ago