Post-exploitation framework that abuses trusted sites like Telegram and Discord for C2.
☆70Apr 24, 2026Updated 4 months ago
Alternatives and similar repositories for Phoenix-Framework
Users that are interested in Phoenix-Framework are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 5 months ago
- AV/EDR processes termination by exploiting a vulnerable driver (BYOVD)☆298Jan 21, 2026Updated 8 months ago
- COM Windows Persistence Technique☆89Apr 27, 2026Updated 4 months ago
- A POC tool for exploring dev-tunnels☆73May 5, 2026Updated 4 months ago
- A Windows rootkit that turns user-land processes into Protected Processes☆29Nov 16, 2024Updated last year
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆28Jul 23, 2026Updated last month
- A EDR bypassing shellcode loader framework for Windows 10 64bit, featuring ETW/AMSI patching, Tartarus Gate, process protection and more☆95Jun 24, 2026Updated 2 months ago
- open source implementation of the UDC2 spec used in Cobalt Strike☆59Jul 4, 2026Updated 2 months ago
- A PoC Cobalt Strike UDRL written in Rust☆34Sep 12, 2026Updated last week
- Reflective DLL loader.☆26Jun 30, 2026Updated 2 months ago
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated 2 months ago
- A C# PE loader for x64 and x86 PE files.☆57Mar 9, 2026Updated 6 months ago
- Fully undetectable and evasive ransomware written in Rust, leveraging a BYOVD technique to disable AV/EDR solutions on the infected syste…☆367Feb 24, 2026Updated 6 months ago
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆35Mar 28, 2026Updated 5 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆28Aug 11, 2025Updated last year
- PoC for a Havoc agent/handler setup with all C2 traffic routed through GitHub. No direct connections: all commands and responses are rela…☆47Jul 9, 2025Updated last year
- Run PowerShell command without invoking powershell.exe☆27Apr 9, 2026Updated 5 months ago
- A different approach to writing BOFs in rust.☆21Aug 20, 2025Updated last year
- .NET process monitor that hooks CLR at the native layer, dumps reflective assemblies from memory, and checks AMSI/ETW integrity vs on dis…☆41Jul 13, 2026Updated 2 months ago
- ☆69Jul 12, 2026Updated 2 months ago
- A simple C2 Framework written in modern C++☆32Jul 2, 2026Updated 2 months ago
- EDRUnChoker - fileless WMI defense that removes EDRChoker QoS throttling policies☆48Jun 8, 2026Updated 3 months ago
- NØW is a word-based shellcode encoding and obfuscation tool that transforms raw shellcode bytes into natural-looking English prose.☆91Jun 24, 2026Updated 2 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A newer iteration of TitanLdr with some newer hooks, and design. A generic user defined reflective DLL I built to prove a point to Mudge …☆34Mar 20, 2023Updated 3 years ago
- Staged DLL injection proof-of-concept built in C using Win32 APIs — developed in an isolated lab environment for red team certification s…☆42Jun 4, 2026Updated 3 months ago
- Evasive shellcode loader with indirect syscalls, Thread name-calling allocation, PoolParty injection☆10Feb 26, 2025Updated last year
- An open-source Linux GUI-based Remote Access Tool developed in C# with a Python payload, intended for legitimate penetration testing and …☆32Mar 9, 2026Updated 6 months ago
- Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.☆51Jul 23, 2026Updated last month
- Phantom-Evasion-Loader is a standalone, pure x64 Assembly injection engine engineered to minimize the detection surface of modern EDR/XDR…☆112Aug 8, 2026Updated last month
- ☆31Apr 2, 2026Updated 5 months ago
- A truly Position Independent Code (PIC) NimPlant C2 beacon written in C, without reflective loading.☆67Feb 11, 2025Updated last year
- Noradrenaline is a collection of high-performance post-exploitation shared libraries designed for native execution on macOS and Linux end…☆32Sep 1, 2026Updated 3 weeks ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Using Just In Time (JIT) instruction decryption, this shellcode loader ensures that only the currently executing instruction is visible i…☆68Apr 2, 2025Updated last year
- Surgical UNWIND_INFO preservation for sleep masking without call stack spoofing.☆55Mar 30, 2026Updated 5 months ago
- A small set of Beacon Object Files (BOFs) that I developed over the time with a Magic: The Gathering theme.☆22Jul 15, 2025Updated last year
- AdaptixC2 default beacon agent extended to support Crystal Palace loaders.☆63May 4, 2026Updated 4 months ago
- Clean Indirect Syscalls with Hook Evasion & Return Address Spoofing.☆101Apr 30, 2026Updated 4 months ago
- Boilerplate to develop raw and truly Position Independent Code (PIC).☆117Jan 20, 2025Updated last year
- Evade behavioral analysis by executing malicious code within trusted Microsoft call stacks, patchless hooking library IAT/EAT.☆148Dec 8, 2025Updated 9 months ago