wabzsy / gonut
Generator of https://github.com/TheWover/donut in pure Go. supports compression, AMSI/WLDP/ETW bypass, etc.
β53Updated last year
Alternatives and similar repositories for gonut:
Users that are interested in gonut are comparing it to the libraries listed below
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callbackβ68Updated 2 years ago
- ππͺ² Malleable C2 profiles parser and assembler written in golangβ65Updated 11 months ago
- frida based script which automates the process of discovering and exploiting DLL Hijacks in target binaries. The discovered binaries can β¦β51Updated 2 years ago
- Extracts TEXT section of a PE, ELF, or Mach-O executable to shellcodeβ103Updated last year
- Self Cleanup in post-ex jobβ55Updated 7 months ago
- AdaptixFramework Extension Kitβ55Updated this week
- Go implementation of the self-deletion of an running executable from diskβ107Updated last year
- A Simple PoCβ21Updated 10 months ago
- Repository of scripts from my blog post on bypassing the YARA rule Windows_Trojan_CobaltStrike_f0b627fc by generating alternative shellcoβ¦β37Updated 6 months ago
- A Cobalt Strike memory evasion loader for redteamersβ99Updated 2 years ago
- β47Updated last year
- ReturnGate, just like HellsGate.β66Updated 2 years ago
- Alternative Shellcode Execution Via Callbacks Rewrite In C#β88Updated last year
- more conveniently Visual-Studio-BOF-templateβ62Updated last year
- A wrapper of ldap_shell.py module which in ntlmrelayxβ62Updated 2 years ago
- Efficient RAT signature locator for bypassing AV/EDR, supporting static scanning and memory scanning.β38Updated 5 months ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Prβ¦β71Updated last year
- β40Updated last year
- Golang implementation of @CCob's C# ThreadlessInjectβ32Updated 11 months ago
- Golang evasion tool, execute-assembly .Net fileβ97Updated 2 years ago
- load assembly executable file in memoryβ40Updated last year
- Beacon Object File implementation of pwn1sher's KillDefenderβ65Updated 2 years ago
- Evasive loader to bypass static detectionβ58Updated last year
- Beacon compiled using clangβ65Updated 2 years ago
- Use the Netlogon Remote Protocol (MS-NRPC) to dump the target hash.β48Updated last month
- Simple LSASS Dumper created using C++ as an alternative to using Mimikatz memory dumperβ54Updated last year
- Help red teams find opsec processes during engagementsβ36Updated 4 months ago
- MSSQL CLR for pentest.β53Updated last year
- ELF Beacon Object File (BOF) Templateβ50Updated 5 months ago
- Beacon Object File to delete token privileges and lower the integrity level to untrusted for a specified processβ43Updated 2 years ago