Skip to content
View fkadibs's full-sized avatar

Sponsoring

@S3cur3Th1sSh1t
@Cracked5pider

Highlights

  • Pro

Block or report fkadibs

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
37 results for source starred repositories written in C
Clear filter

LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x/6.x (x86/x86_64 and ARM64)

C 2,176 470 Updated Oct 18, 2025

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc

C 1,969 502 Updated Jul 13, 2022

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.

C 1,641 182 Updated Oct 19, 2023

A modern 32/64-bit position independent implant template

C 1,261 204 Updated Mar 21, 2025

Credentials Dumper for Linux using eBPF

C 1,150 64 Updated Sep 9, 2024

Cobalt Strike UDRL for memory scanner evasion.

C 985 168 Updated Jun 4, 2024

Exploit for 6.4 - 6.5 kernels and another exploit for 5.15 - 6.5

C 845 128 Updated Apr 19, 2024

Tool for extracting information from newly spawned processes

C 769 112 Updated May 11, 2025

A collection of eBPF programs demonstrating bad behavior, presented at DEF CON 29

C 669 91 Updated Jul 7, 2024

Red-Team Linux kernel rootkit

C 598 86 Updated Oct 27, 2025

Collection of UAC Bypass Techniques Weaponized as BOFs

C 574 71 Updated Feb 21, 2024

UEFI bootkit for driver manual mapping

C 573 108 Updated Jan 1, 2024

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

C 504 58 Updated Mar 29, 2025

a signal handler race condition in OpenSSH's server (sshd)

C 488 186 Updated Jul 1, 2024

A beacon object file implementation of PoolParty Process Injection Technique.

C 420 49 Updated Dec 21, 2023

An other No-Fix LPE, NTLMRelay2Self over HTTP (Webdav).

C 414 43 Updated Jan 27, 2024

.NET assembly loader with patchless AMSI and ETW bypass

C 355 51 Updated Apr 19, 2023

COFF file (BOF) for managing Kerberos tickets.

C 317 32 Updated Jul 2, 2023

Waiting Thread Hijacking - injection by overwriting the return address of a waiting thread

C 246 21 Updated Aug 31, 2025

Zombie Ant Farm: Primitives and Offensive Tooling for Linux EDR evasion.

C 228 38 Updated Aug 10, 2019

Use hardware breakpoints to spoof the call stack for both syscalls and API calls

C 197 28 Updated Jun 6, 2024

GhostWriting Injection Technique.

C 183 30 Updated Mar 26, 2018

Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options

C 143 12 Updated Mar 26, 2025

It's pointy and it hurts!

C 126 22 Updated Oct 18, 2022

A simple BOF that frees UDRLs

C 121 25 Updated May 29, 2022

Boilerplate to develop raw and truly Position Independent Code (PIC).

C 106 16 Updated Jan 20, 2025
Next