xforcered / VectoredExceptionHandling
☆31Updated 7 months ago
Alternatives and similar repositories for VectoredExceptionHandling:
Users that are interested in VectoredExceptionHandling are comparing it to the libraries listed below
- Combining 3 techniques (Threadless Injection + DLL Stomping + Caro-Kann) together to evade MDE.☆61Updated last year
- Lockless BOF☆70Updated this week
- ☆102Updated 3 months ago
- SharpExShell automates the DCOM lateral movment technique which abuses ActivateMicrosoftApp method of Excel application.☆70Updated 11 months ago
- ☆97Updated 7 months ago
- Cobaltstrike Reflective Loader with Synthetic Stackframe☆111Updated 2 months ago
- Click Once + App Domain☆61Updated last year
- ☆127Updated 7 months ago
- Lateral Movement via the .NET Profiler☆80Updated 4 months ago
- ☆98Updated last year
- ☆107Updated 2 months ago
- Experimental PoC for unhooking API functions using in-memory patching, without VirtualProtect, for one specific EDR.☆39Updated last year
- Rust template/library for implementing your own COFF loader☆49Updated 2 months ago
- ☆52Updated 3 months ago
- Robust Cobalt Strike shellcode loader with multiple advanced evasion features☆56Updated this week
- ☆54Updated 2 months ago
- ☆61Updated 10 months ago
- Cobalt Strike UDRL for memory scanner evasion.☆50Updated last year
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆74Updated last month
- A care package of useful bofs for red team engagments☆55Updated 4 months ago
- ☆27Updated 3 months ago
- ☆120Updated last year
- Implant drop-in for EDR testing☆135Updated last year
- ☆86Updated 7 months ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆60Updated last year
- Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion☆14Updated last week
- AzureAD beacon object files☆115Updated 3 months ago
- Sniffing files generator☆54Updated last month
- ForsHops☆98Updated 3 weeks ago
- Execute dotnet app from unmanaged process☆72Updated 3 months ago