Skip to content
View cowbe0x004's full-sized avatar

Block or report cowbe0x004

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
190 stars written in C
Clear filter

A proof-of-concept Cobalt Strike Reflective Loader which aims to recreate, integrate, and enhance Cobalt Strike's evasion features!

C 1,375 266 Updated Nov 22, 2023

Dump cookies and credentials directly from Chrome/Edge process memory

C 1,361 128 Updated Sep 19, 2025

Qtap: An eBPF agent that captures pre-encrypted network traffic, providing rich context about egress connections and their originating processes.

C 1,360 42 Updated Nov 10, 2025

Linux Binary Exploitation

C 1,347 210 Updated Jun 15, 2021

CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost

C 1,341 342 Updated Dec 7, 2020

Research code & papers from members of vx-underground.

C 1,314 252 Updated Dec 7, 2021

TrevorC2 is a legitimate website (browsable) that tunnels client/server communications for covert command execution.

C 1,301 278 Updated Jan 31, 2022

Snoopy Command Logger is a small library that logs all program executions on your Linux/BSD system.

C 1,279 158 Updated Oct 24, 2024

This book on heap exploitation is a guide to understanding the internals of glibc's heap and various attacks possible on the heap structure.

C 1,266 121 Updated Oct 7, 2022

Exercises to learn how to fuzz with American Fuzzy Lop

C 1,265 197 Updated Oct 12, 2022

Linux kernel CVE exploit analysis report and relative debug environment. You don't need to compile Linux kernel and configure your environment anymore.

C 1,260 191 Updated Aug 11, 2024

proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC

C 1,257 294 Updated May 1, 2024

Credentials Dumper for Linux using eBPF

C 1,150 64 Updated Sep 9, 2024

AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and restore various kernel modifications and hooks.With …

C 1,110 430 Updated Apr 22, 2021

Hide a process under Linux using the ld preloader (https://sysdig.com/blog/hiding-linux-processes-for-fun-and-profit/)

C 1,109 322 Updated Aug 2, 2019

Vulnerable server used for learning software exploitation

C 1,083 262 Updated Oct 9, 2020

Turn off PatchGuard in real time for win7 (7600) ~ later

C 1,028 309 Updated Apr 21, 2022

A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.

C 977 316 Updated Dec 13, 2017

Apache Block Bad Bots, (Referer) Spam Referrer Blocker, Vulnerability Scanners, Malware, Adware, Ransomware, Malicious Sites, Wordpress Theme Detectors and Fail2Ban Jail for Repeat Offenders

C 927 197 Updated Nov 10, 2025

A protective and Low Level Shellcode Loader that defeats modern EDR systems.

C 916 143 Updated Mar 20, 2024

A quick scanner for the CVE-2019-0708 "BlueKeep" vulnerability.

C 916 242 Updated Jun 22, 2019

Netflow processing tools

C 870 216 Updated Nov 10, 2025

The multi-platform memory acquisition tool.

C 868 130 Updated Oct 14, 2025

The Official Radare2 Book

C 859 240 Updated Nov 5, 2025

Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and correlation rules by Blue teams.

C 858 110 Updated Jan 20, 2022

Proof-of-concept for the ZombieLoad attack

C 819 123 Updated Dec 24, 2021

Exploits for getting local root on Linux, BSD, AIX, HP-UX, Solaris, RHEL, SUSE etc.

C 817 318 Updated Apr 11, 2023

A framework for layer 2 attacks

C 805 132 Updated Sep 15, 2023