Pseudo-shell for RCE scenarios: tunnels commands via /tmp sockets to a local daemon, keeps context, no bind or reverse shell needed.
☆48Jun 12, 2025Updated last year
Alternatives and similar repositories for shellnot
Users that are interested in shellnot are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Detect public repository dependencies in the GitHub repositories with an orphan required library.☆24Jun 19, 2026Updated last month
- Rust implementation of phantom persistence technique documented in https://blog.phantomsec.tools/phantom-persistence☆65Jun 23, 2025Updated last year
- NTLM Relaying to generic web services with NTLM authentication☆77Mar 20, 2026Updated 4 months ago
- An easy way to convert BloodHound output files into data that can be imported into reporting software like Dradis and Plextrac. Built by …☆20Oct 15, 2020Updated 5 years ago
- A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.☆166Apr 15, 2026Updated 3 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆36Jan 23, 2025Updated last year
- Automating the MITM attack on WSUS☆381Updated this week
- General Purpose OpSec Server☆114Mar 13, 2026Updated 4 months ago
- The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencie…☆180Sep 3, 2025Updated 10 months ago
- SCCMSecrets.py aims at exploiting SCCM policies distribution for credentials harvesting, initial access and lateral movement.☆273Nov 22, 2025Updated 7 months ago
- Enumerate Domain Users Without Authentication☆304Apr 22, 2025Updated last year
- Experimentations with the MSBuild Capabilites in a default environment.☆23Dec 6, 2025Updated 7 months ago
- ☆37Apr 15, 2025Updated last year
- DSCourier is a proof-of-concept that uses the WinGet Configuration COM API to apply DSC configurations through Microsoft-signed binaries.☆210Jun 25, 2026Updated 3 weeks ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. Implemented in C#, C++, Crystal, P…☆137Feb 17, 2026Updated 5 months ago
- Parses cached certificate templates from a Windows Registry file and displays them in the same style as Certipy does☆96Jul 3, 2025Updated last year
- Async BOF to automatically extract or renew Kerberos TGTs on a target system.☆134Updated this week
- ☆246Mar 13, 2026Updated 4 months ago
- psexecsvc - a python implementation of PSExec's native service implementation☆308Mar 24, 2026Updated 3 months ago
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆129Jul 11, 2025Updated last year
- A modern, web-based GUI for Hashcat that provides an intuitive interface for hash cracking operations, featuring real-time monitoring, pe…☆34Mar 5, 2025Updated last year
- async beacon object file for notification on process creation☆17Mar 24, 2026Updated 3 months ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆444Jun 27, 2025Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- CTRL-ESC-HOST is an assessment methodology for testing for security flaws in Kiosks and Presented Applications.☆21Jul 1, 2026Updated 2 weeks ago
- ☆165May 5, 2025Updated last year
- ☆85Feb 12, 2026Updated 5 months ago
- An x64 position-independent shellcode stager that verifies the stage it retrieves prior to execution☆195Nov 27, 2024Updated last year
- ☆20Mar 3, 2026Updated 4 months ago
- UDC2 implementation that provides an ICMP C2 channel☆125Nov 24, 2025Updated 7 months ago
- A small collection of Crystal Palace PIC loaders designed for use with Cobalt Strike☆236Apr 11, 2026Updated 3 months ago
- Shellcode injection using the Windows Debugging API☆183Jan 4, 2026Updated 6 months ago
- find dll base addresses without PEB WALK☆170Jul 13, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A vibe-coded port of wiretap☆35Apr 25, 2026Updated 2 months ago
- Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.☆640Feb 2, 2026Updated 5 months ago
- Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domai…☆311Mar 28, 2026Updated 3 months ago
- Matryoshka loader is a tool that red team operators can leverage to generate shellcode for Microsoft Office document phishing payloads.☆43May 24, 2021Updated 5 years ago
- Local SYSTEM auth trigger for relaying - X☆159Jul 23, 2025Updated 11 months ago
- JamfHound is a python3 project designed to collect and identify attack paths in Jamf Pro tenants based on existing object permissions by …☆134Apr 23, 2026Updated 2 months ago
- A Windows Named Pipe Multi-tool / Proxy☆351Dec 7, 2025Updated 7 months ago