x86byte / LummaC2-Stealer
LummaC2 extracted binaries by reversing & LummaC2 Stealer Analysis
☆25Updated last month
Alternatives and similar repositories for LummaC2-Stealer:
Users that are interested in LummaC2-Stealer are comparing it to the libraries listed below
- command control framework☆20Updated this week
- ☆54Updated 5 months ago
- ☆20Updated 3 weeks ago
- Make an Linux Kernel rootkit visible again.☆47Updated last month
- ☆28Updated last year
- Enumerate SSN (System Service Numbers or Syscall ID) and syscall instruction address in ntdll module by parsing the PEB of the current pr…☆20Updated last year
- Demonstration of Early Bird APC Injection - MITRE ID T1055.004☆30Updated last year
- OSED Practice binary☆24Updated last year
- Parent Process ID Spoofing, coded in CGo.☆22Updated 9 months ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆41Updated 8 months ago
- A remote unauthenticated DOS POC exploit that targets the authentication implementation of Havoc.☆35Updated last year
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆24Updated 6 months ago
- Proof of Concept Exploit for CVE-2024-9465☆29Updated 5 months ago
- Dump Linux keyrings☆17Updated 8 months ago
- Early cascade injection PoC based on Outflanks blog post written in Rust☆53Updated last month
- ☆17Updated 4 months ago
- A simple rpc2socks alternative in pure Go.☆28Updated 8 months ago
- freeBokuLoader fork which targets and frees Metsrv's initial reflective DLL package☆33Updated 2 years ago
- Detect Remote Local Credentials Dumping using a Shadow Snapshot☆21Updated 2 months ago
- NailaoLoader: Hiding Execution Flow via Patching☆19Updated last month
- Extension functionality for the NightHawk operator client☆27Updated last year
- Beacon Object Files used for Cobalt Strike☆17Updated last year
- Exploit for CVE-2024-5009☆13Updated 8 months ago
- Ivanti Connect Secure IFT TLS Stack Overflow pre-auth RCE (CVE-2025-0282)☆22Updated 2 months ago
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated last year
- ☆18Updated 5 months ago
- RCE PoC for Empire C2 framework <5.9.3☆26Updated last year
- DFSCoerce exe revisited version with custom authentication☆38Updated last year
- ManageEngine ADManager Command Injection☆11Updated last year
- CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)☆33Updated last month