timwhitez / BinHol
Binary Hollowing
☆56Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for BinHol
- Red team tool designed for quickly identifying hijackable programs, evading antivirus software, and EDR (Endpoint Detection and Response)…☆60Updated 6 months ago
- Magical obfuscator, supports obfuscating EXE, BOF, and ShellCode.☆83Updated this week
- Shellcode Reductio Entropy Tools☆63Updated last year
- Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.☆16Updated last month
- Cobalt Strike BOF that Add a user to localgroup by samr☆123Updated last year
- more conveniently Visual-Studio-BOF-template☆53Updated last year
- Resolve the issue of DLLmain function in white and black DLLs hanging when calling shellcode☆110Updated 5 months ago
- beta☆111Updated 2 months ago
- impacket编程手册☆98Updated last year
- This is a third party agent for Havoc C2 written in golang.☆56Updated 10 months ago
- ☆49Updated last year
- 免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus☆66Updated 2 years ago
- Hidedump:a lsassdump tools that may bypass EDR☆36Updated 6 months ago
- BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the curr…☆67Updated last year
- 主要用于隐藏进程真实路径,进程带windows真签名☆75Updated last month
- 利用EFSRPC协议批量探测出网☆65Updated last year
- 使用 rust 实现 CobaltStrike 的 beacon || Using Rust to implement CobaltStrike's Beacon☆89Updated 2 weeks ago
- vehsyscall:a syscall project that may bypass EDR☆46Updated 8 months ago
- Delete file regardless of whether the handle is used via SetFileInformationByHandle☆40Updated last year
- command execute without 445 port☆51Updated 2 years ago
- Cobalt Strike BOF that Add an admin user☆69Updated 2 years ago
- 一个2020年练手的基于gin框架搞的在线免杀平台,支持后台管理,邀请码注册等☆34Updated 2 months ago
- Beta Linker☆20Updated 3 months ago
- ☆22Updated last year
- Alternative Shellcode Execution Via Callbacks Rewrite In C#☆87Updated last year
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆34Updated 6 months ago
- Confluence未授权添加管理员用户(CVE-2023-22515)漏洞利用工具☆108Updated last year
- mssqlproxy python3.5+ 并修复bug☆59Updated last year
- 通过websocket在IIS8(Windows Server 2012)以上实现socks5代理☆71Updated 9 months ago