thomasxm / BOAZLinks
A Multilayered AV/EDR Evasion Framework and AV Testing Tool.
☆16Updated 5 months ago
Alternatives and similar repositories for BOAZ
Users that are interested in BOAZ are comparing it to the libraries listed below
Sorting:
- Classic Process Injection with Memory Evasion Techniques implemantation☆72Updated 2 years ago
- PoC showcasing new DarkGate Install Script retrieval technique via DNS TXT Record☆44Updated last year
- this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)☆83Updated last year
- Hunt for C2 servers and phishing web sites using VirusTotal API , you can modify code to kill the malicious process☆72Updated last year
- C++ Staged Shellcode Loader with Evasion capabilities.☆99Updated last year
- APT-Attack-Simulation simulates APT 29 and Lockbit TTPs, showcasing phishing, ISO execution, and DLL proxying for persistence and privile…☆62Updated last year
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆51Updated last year
- Охотник (Hunter) is a simple Adversary Simulation tool developed for achieves stealth through API unhooking, direct and indirect syscalls…☆90Updated 7 months ago
- A modification to fortra's CVE-2023-28252 exploit, compiled to exe☆54Updated last year
- Go ransomware leveraging ChaCha20 and ECIES encryption with a web-based control panel.☆45Updated 7 months ago
- A C2 framework built for my bachelors thesis☆56Updated last year
- NoArgs is a tool designed to dynamically spoof and conceal process arguments while staying undetected. It achieves this by hooking into W…☆154Updated last year
- Direct syscalls Injection to bypass AV/EDR☆12Updated last year
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆27Updated last year
- A command and control framework.☆54Updated 11 months ago
- ☆59Updated last year
- .bin file to shellcode convertor☆39Updated last year
- Two in one, patch lifetime powershell console, no more etw and amsi!☆98Updated 7 months ago
- PowerShell script to generate ShellCode in various formats☆45Updated last year
- A lightweight tool that injects a custom assembly proxy into a target process to silently bypass AMSI scanning by redirecting AmsiScanBuf…☆61Updated 6 months ago
- This is way to load a shellcode, and obfuscate it, so it avoids scantime detection.☆87Updated 7 months ago
- Bypasses AMSI protection through remote memory patching and parsing technique.☆54Updated 6 months ago
- Unhook Ntdll.dll, Go & C++.☆32Updated 7 months ago
- Attempting to Hook LSASS APIs to Retrieve Plaintext Credentials☆60Updated 6 months ago
- Automated .NET AppDomain hijack payload generation☆129Updated 10 months ago
- Transparently call NTAPI via Halo's Gate with indirect syscalls.☆14Updated last year
- ☆109Updated 9 months ago
- Good CLR Host with Native patchless AMSI Bypass☆96Updated 7 months ago
- Example code samples from our ScriptBlock Smuggling Blog post☆92Updated last year
- Red Team Operation's Defense Evasion Technique.☆56Updated last year