yutianqaq / Anti-Sandbox-Go
Some anti-sandbox techniques implemented in Golang.
☆11Updated last year
Alternatives and similar repositories for Anti-Sandbox-Go:
Users that are interested in Anti-Sandbox-Go are comparing it to the libraries listed below
- A tool to assist DLL hijacking via the Havoc GUI☆13Updated last year
- Using LNK files and user input simulation to start processes under explorer.exe☆25Updated 7 months ago
- BypassCredGuard CS BOF☆38Updated 3 months ago
- Golang implementation of @CCob's C# ThreadlessInject☆32Updated last year
- Cobalt Strike Beacon Object File (BOF) that uses LogonUserSSPI API to perform kerberos-based password spray☆47Updated 2 years ago
- A tool written in golang which compress using UPX and patch it with the provided PE file to make "UPX -d" flag impossible to decompress a…☆17Updated 4 months ago
- Enable-All-Tokens is a Go-based project designed to adjust and enable a list of specified privileges for the current process token on a W…☆9Updated 2 weeks ago
- Library of BOFs to interact with SQL servers☆21Updated last month
- replace the shellcode chatacters so that reduce the entropy☆17Updated last year
- A Simple PoC☆21Updated 11 months ago
- Help red teams find opsec processes during engagements☆40Updated 5 months ago
- (EDR) Dll Unhooking = kernel32.dll, kernelbase.dll, ntdll.dll, user32.dll, apphelp.dll, msvcrt.dll.☆18Updated 2 weeks ago
- Windows Service with the implementation of the Process hollowing technique to run shellcode☆14Updated last year
- BOF/COFF obj file to PIC(shellcode). by golang☆39Updated 2 years ago
- Use the Netlogon Remote Protocol (MS-NRPC) to dump the target hash.☆48Updated 2 months ago
- Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process☆44Updated 2 years ago
- Go Shellcode Loader to be Integrated in Exploration C2☆26Updated 3 months ago
- Preventing 3rd Party DLLs from Injecting into your Malware☆25Updated 3 years ago
- CSharp reimplementation of Venoma, another C++ Cobalt Strike beacon dropper with custom indirect syscalls execution☆42Updated last year
- ProcExp Driver (Ab)use☆22Updated 2 years ago
- A simple PoC of injection shellcode into a remote process and get the output using namepipe☆42Updated last year
- BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel☆23Updated 10 months ago
- Groovy Post Exploitation☆20Updated 6 months ago
- Beacon Object Files.☆35Updated last year
- ☆70Updated last year
- Cobalt Strike Beacon Object File (BOF) that obtain SYSTEM privilege with SeImpersonate privilege by passing a malicious IUnknwon object t…☆45Updated 2 years ago
- Cobalt Strike Beacon Object File to to change the user's desktop wallpaper☆13Updated last year
- A nim implementation of sRDI☆18Updated last year
- BloodyAv is Custom Shell Code loader to Bypass Av and Edr.☆13Updated 3 years ago
- ☆14Updated 2 years ago