timwhitez / memmod
Fork & modify of Wireguard's Memmod
☆31Updated last year
Alternatives and similar repositories for memmod:
Users that are interested in memmod are comparing it to the libraries listed below
- Golang implementation of Hellsgate + Halosgate/Tartarosgate. Ensures that all systemcalls go through ntdll.dll;☆32Updated 2 years ago
- Use the Netlogon Remote Protocol (MS-NRPC) to dump the target hash.☆23Updated 10 months ago
- ☆30Updated last year
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆44Updated last year
- ☆12Updated 2 years ago
- ☆45Updated 7 months ago
- Load CLR to get RWX 通过加载clr在自身内存中产生rwx空间☆22Updated 2 years ago
- CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administr…☆14Updated last year
- dump lsass☆37Updated 2 years ago
- ☆39Updated last year
- desktop screenshot☆29Updated last year
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆41Updated last year
- dump lsass tool☆39Updated 2 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆43Updated 2 years ago
- Load ssp dll golang implementation☆19Updated 3 years ago
- Its a coff loader ported to go( Modified by TimWhite )☆26Updated last year
- query specific user and login IP from remote machine☆17Updated 2 years ago
- ☆21Updated last year
- Learning notes of amazing Sliver C2 project.☆25Updated last year
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆18Updated 8 months ago
- load assembly executable file in memory☆38Updated last year
- Reflective DLL injection Execution☆19Updated 2 years ago
- Cs-Sleep-Mask-Fiber☆17Updated 5 months ago
- DiagTrack Eop (From Service Account to SYSTEM)☆22Updated 2 years ago
- ScareCrow loader binary source which easier to read and learn☆25Updated 2 years ago
- BOF/COFF obj file to PIC(shellcode). by golang☆37Updated 2 years ago
- Bypass EDR Create TaskServers☆36Updated 2 years ago
- Golang implement winrm client with pass the hash☆31Updated 9 months ago
- CVE-2021-42287/CVE-2021-42278 exploits in powershell☆37Updated 2 years ago
- ☆12Updated 4 years ago