sexyiam / UAC-Bypass
UAC Bypass via CMUACUtil & PEB Enumeration, Undetected for now.
☆46Updated 11 months ago
Alternatives and similar repositories for UAC-Bypass:
Users that are interested in UAC-Bypass are comparing it to the libraries listed below
- Threadless shellcode injection tool☆63Updated 8 months ago
- ☆106Updated 2 months ago
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆74Updated 7 months ago
- TypeLib persistence technique☆109Updated 5 months ago
- Encode shellcode into dictionary words for evasion and entropy reduction☆25Updated 5 months ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆60Updated last year
- BOF with Synthetic Stackframe☆140Updated last month
- ☆120Updated last year
- ☆126Updated 7 months ago
- A Mythic agent for Windows written in C☆114Updated this week
- ☆78Updated last year
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆108Updated 2 months ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆84Updated 2 years ago
- Explorer Persistence technique : Hijacking cscapi.dll order loading path and writing our malicious dll into C:\Windows\cscapi.dll , when …☆82Updated 2 years ago
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆61Updated last year
- EmbedExeLnk by x86matthew modified by d4rkiZ☆39Updated last year
- Shellcode loader☆79Updated 4 months ago
- Execute dotnet app from unmanaged process☆72Updated 3 months ago
- ☆96Updated 7 months ago
- Early Bird Cryo Injections – APC-based DLL & Shellcode Injection via Pre-Frozen Job Objects☆50Updated this week
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆118Updated 2 years ago
- Shellcode Loader Utilizing ETW Events☆62Updated last month
- stack spoofing☆82Updated 4 months ago
- reflectively load and execute PEs locally and remotely bypassing EDR hooks☆150Updated last year
- Modified versions of the Cobalt Strike Process Injection Kit☆93Updated last year
- ☆36Updated 2 years ago
- ☆53Updated 2 months ago
- Bypassing Amsi using LdrLoadDll☆44Updated 3 months ago
- lsassdump via RtlCreateProcessReflection and NanoDump☆79Updated 5 months ago
- Patch AMSI and ETW in remote process via direct syscall☆81Updated 2 years ago