Stars
williamknows / BOF.NET
Forked from CCob/BOF.NETA .NET Runtime for Cobalt Strike's Beacon Object Files
BOF implementation of delete self poc that delete a locked executable or a currently running file from disk by its pid, path, or the current process.
more conveniently Visual-Studio-BOF-template
A more reliable way of resolving syscall numbers in Windows
Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process
Vulnerability analysis and proof of concepts
boku7 / LoudSunRun
Forked from susMdT/LoudSunRunMy shitty attempt at tampering with the callstack based on the work of namazso, SilentMoonWalk, and VulcanRaven
Low-resource .ZIP file writer (store only) suitable for embedded use.
ASkyeye / LdrLibraryEx
Forked from Cracked5pider/LdrLibraryExA small x64 library to load dll's into memory.
ASkyeye / LoudSunRun
Forked from susMdT/LoudSunRunMy shitty attempt at tampering with the callstack based on the work of namazso, SilentMoonWalk, and VulcanRaven
Huorong Internet Security vulnerabilities 火绒安全软件漏洞
ASkyeye / RecycledInjector
Forked from florylsk/RecycledInjectorNative Syscalls Shellcode Injector
Avienma / process-inject
Forked from suvllian/process-inject在Windows环境下的进程注入方法:远程线程注入、创建进程挂起注入、反射注入、APCInject、SetWindowHookEX注入
Kara-4search / cmd2shellcode
Forked from scareing/cmd2shellcodecmd2shellcode