Things i do because i saw it on twitter on a weekend
☆56Jul 20, 2025Updated last year
Alternatives and similar repositories for lordran.polymorphic.shellcode
Users that are interested in lordran.polymorphic.shellcode are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Print the stack trace☆51Mar 8, 2026Updated 5 months ago
- Using Just In Time (JIT) instruction decryption, this shellcode loader ensures that only the currently executing instruction is visible i…☆67Apr 2, 2025Updated last year
- ☆64Jul 12, 2026Updated last month
- Code execution/injection technique using DLL PEB module structure manipulation☆288Jun 4, 2025Updated last year
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆55Mar 30, 2026Updated 4 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Metamorphic cross-compilation of C++ & C-code to PIC, BOF & EXE.☆642Feb 2, 2026Updated 6 months ago
- Querying And Deleting Shadow Copies Using The IOCTL_VOLSNAP_QUERY_NAMES_OF_SNAPSHOTS & IOCTL_VOLSNAP_DELETE_SNAPSHOT IOCTLs☆22Aug 7, 2025Updated last year
- A collection of PoCs to do common things in unconventional ways☆121Aug 31, 2025Updated 11 months ago
- Obex – Blocking unwanted DLLs in user mode☆281Sep 18, 2025Updated 11 months ago
- A bunch of shenanigans using functions, VEH and more☆37Jun 8, 2025Updated last year
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆195Jan 17, 2026Updated 7 months ago
- Implementing an early exception handler for hooking and threadless process injection without relying on VEH or SEH☆141Aug 31, 2025Updated 11 months ago
- Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijac…☆159Jul 20, 2026Updated last month
- Dynamic shellcode loader with sophisticated evasion capabilities☆346Oct 1, 2025Updated 10 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- BOF to run PE in Cobalt Strike Beacon without console creation☆200Nov 23, 2025Updated 9 months ago
- Proof-of-concept kernel driver that hijacks the Windows kernel extension table mechanism to preserve process notify callbacks even when a…☆98Jul 7, 2025Updated last year
- Commandline spoofing on Windows☆100Jul 19, 2026Updated last month
- Stealthily inject shellcode into an executable☆483Oct 19, 2025Updated 10 months ago
- Shellcode injection using the Windows Debugging API☆182Jan 4, 2026Updated 7 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆59Jul 4, 2026Updated last month
- EDR-Redir : a tool used to redirect the EDR's folder to another location.☆239May 23, 2026Updated 3 months ago
- PIC shellcode (C/C++) development toolkit designed for malware developers.☆133Dec 23, 2025Updated 8 months ago
- DoublePulsar (Position-Independent) Shellcode (Windows 7 SP1 x64)☆26Mar 11, 2020Updated 6 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- BOF with Synthetic Stackframe☆260Oct 30, 2025Updated 9 months ago
- Windows User-Mode Shellcode Development Framework (WUMSDF)☆158Jul 15, 2026Updated last month
- PoC for generating bthprops.cpl module designed to be loaded by Fsquirt.exe LOLBin☆121Jan 4, 2026Updated 7 months ago
- abusing windows toast notifications for fun and user manipulation☆104Jul 11, 2026Updated last month
- Locate dlls and function addresses without PEB Walk and EAT parsing☆110Nov 7, 2025Updated 9 months ago
- Set of PoC to abuse Windows minifilters functionality☆94May 1, 2026Updated 3 months ago
- A small collection of Crystal Palace PIC loaders designed for use with Cobalt Strike☆241Apr 11, 2026Updated 4 months ago
- Using Chromium-based browsers as a proxy for C2 traffic.☆156Dec 6, 2025Updated 8 months ago
- Lateral Movement Bof with MSI ODBC Driver Install☆174Sep 30, 2025Updated 10 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Blog/Journal on how to backdoor VSCode extensions☆81Feb 24, 2026Updated 6 months ago
- Bof of RegPwn by MDSec☆129Mar 15, 2026Updated 5 months ago
- Using call gadgets to break the call stack signature used by Elastic on proxying a module load. Provided as a Crystal Palace shared libra…☆88Nov 6, 2025Updated 9 months ago
- Beacon Object File for Cobalt Strike that executes .NET assemblies in beacon with evasion techniques.☆198Dec 23, 2025Updated 8 months ago
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆461Jun 27, 2025Updated last year
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆365Aug 15, 2026Updated 2 weeks ago
- Boilerplate to develop raw and truly Position Independent Code (PIC).☆118Jan 20, 2025Updated last year