t1b4n3 / TibaneC2Links
A lightweight Command and Control (C2) framework built for offensive security research and red teaming (Post Exploitation).
☆67Updated last month
Alternatives and similar repositories for TibaneC2
Users that are interested in TibaneC2 are comparing it to the libraries listed below
Sorting:
- A lightweight tool that injects a custom assembly proxy into a target process to silently bypass AMSI scanning by redirecting AmsiScanBuf…☆61Updated 8 months ago
- Convert your shellcode into an ASCII string☆124Updated 6 months ago
- Remote DLL Injection with Timer-based Shellcode Execution☆152Updated 5 months ago
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆122Updated 6 months ago
- CVE-2025-0282 is a critical vulnerability found in Ivanti Connect Secure, allowing Remote Command Execution (RCE) through a buffer overfl…☆52Updated last year
- Smart keylogging capability to steal SSH Credentials including password & Private Key☆150Updated 9 months ago
- Early cascade injection PoC based on Outflanks blog post written in Rust☆68Updated 3 weeks ago
- Opsec tool for finding user sessions by analyzing event log files through RPC (MS-EVEN)☆77Updated last year
- Automated script for obfuscating, rebranding and renaming the Havoc C2 Framework to evade AV/EDR and C2 hunters.☆46Updated 5 months ago
- ☆57Updated 6 months ago
- Enumerate active EDR's on the system☆148Updated 3 months ago
- Work, timer, and wait callback example using solely Native Windows APIs.☆88Updated last year
- We found a way to DLL sideload with cleanmgr.exe☆96Updated 10 months ago
- Collection of red team techniques.☆64Updated 8 months ago
- POC of GITHUB simple C2 in rust☆52Updated 5 months ago
- This is a GRE PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆92Updated 4 months ago
- ☆35Updated 6 months ago
- A BOF to retrieve decryption keys for WhatsApp Desktop and a utility script to decrypt the databases.☆89Updated 10 months ago
- 「⚠️」Performing a BYOVD on the truesight.sys driver☆44Updated last year
- (MeetC2 a.k.a Meeting C2) - A framework abusing Google Calendar APIs.☆129Updated 4 months ago
- PowerShell script to generate ShellCode in various formats☆46Updated last year
- Automated .NET AppDomain hijack payload generation☆128Updated 11 months ago
- Automatically scan the file system to identify Electron applications vulnerable to ASAR tampering.☆147Updated last month
- EDRStartupHinder: A red team tool to prevent Antivirus and EDR from running.☆99Updated this week
- PfSense Stored XSS lead to Arbitrary Code Execution exploit☆49Updated last year
- Create Anti-Copy DRM Malware☆70Updated last year
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆61Updated 8 months ago
- Abusing SSRF to deliver an authenticated command injection payload☆30Updated 4 months ago
- ☆48Updated last month
- A truly Position Independent Code (PIC) NimPlant C2 beacon written in C, without reflective loading.☆66Updated 11 months ago