Stars
Tunnel all your traffic over Websocket or HTTP2 - Bypass firewalls/DPI - Static binary available
A proxy to expose real tls handshake to the firewall
Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.
Freeze.rs is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls written in RUST
Rusty Injection - Shellcode Reflective DLL Injection (sRDI) in Rust (Codename: Venom)
Threadless Process Injection through entry point hijacking
Single stub direct and indirect syscalling with runtime SSN resolving for windows.
(First Public?) Sample of unhooking ntdll (All Exports & IAT imports) hooks in Rust using in-memory disassembly, avoiding direct syscalls and all hooked functions (incl. hooked NtProtectVirtualMemory)
Detect EDR's exceptions by inspecting processes' loaded modules
A memory-based evasion technique which makes shellcode invisible from process start to end.