Skip to content
View mlcsec's full-sized avatar

Block or report mlcsec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A cross-platform C++ framework for building Windows shellcode

C++ 151 13 Updated Feb 9, 2026

SOCKS5 proxy tool that uses Azure Blob Storage as a means of communication.

Go 292 36 Updated Apr 29, 2025

Open Source Implementation of Cobalt Strike's Malleable C2

C 92 12 Updated Jan 27, 2026

A BOF that's a BOF Loader and more

C++ 196 20 Updated Jan 17, 2026

Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory .NET assembly loads. This tool unhooks that functi…

C++ 202 23 Updated Dec 8, 2025

BOF to run PE in Cobalt Strike Beacon without console creation

C++ 186 26 Updated Nov 23, 2025

IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare

Python 269 17 Updated Dec 15, 2025

Your template-based BloodHound terminal companion tool

Python 446 36 Updated Jan 21, 2026

A tool to transform Chromium browsers into a C2 Implant

JavaScript 547 72 Updated Dec 17, 2025

C2 Agent fully PIC for Mythic with advanced evasion capabilities, dotnet/powershell/shellcode/bof memory executions, lateral moviments, pivot and more.

C++ 197 36 Updated Dec 30, 2025

🧙‍♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications

JavaScript 1,288 211 Updated Jun 17, 2025

An example reference design for a proposed BOF PE

C++ 197 28 Updated Jan 23, 2026

Reaping treasures from strings in remote processes memory

C 285 23 Updated Feb 8, 2025

iOS and macOS Decompiler

Java 2,653 89 Updated Aug 26, 2025

COM ViewLogger — new malware keylogging technique

C++ 403 56 Updated Jan 6, 2025

.NET assembly loader with patchless AMSI and ETW bypass

C 368 51 Updated Apr 19, 2023

TokenCert

C# 102 10 Updated Nov 15, 2024
C# 424 40 Updated Apr 22, 2025

PXEThief is a set of tooling that can extract passwords from the Operating System Deployment functionality in Microsoft Endpoint Configuration Manager

Python 410 66 Updated May 29, 2024
Python 80 12 Updated Jan 26, 2025

Embed a payload inside a PNG file

C 368 55 Updated Oct 24, 2024

Azure DevOps Services Attack Toolkit

C# 150 64 Updated Mar 15, 2025

Beacon Object File Loader

C 293 39 Updated Dec 3, 2023

Identify common EDR processes, directories, and services. Simple BOF of Invoke-EDRChecker.

C 128 9 Updated Oct 4, 2024

Disconnected RSAT - A method of running Group Policy Manager, Certificate Authority and Certificate Templates MMC snap-ins from non-domain joined machies

C# 273 30 Updated Dec 27, 2024

A set of programs for analyzing common vulnerabilities in COM

C++ 246 40 Updated Sep 8, 2024

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

C++ 345 41 Updated Nov 19, 2024

Email enumerator, username generator, and context validator for hunter.io, snov.io, and skrapp.io

Python 84 5 Updated Aug 5, 2024

The recursive internet scanner for hackers. 🧡

Python 9,412 765 Updated Feb 14, 2026
Next