Highlights
postpen-c2
indirect syscalls for AV/EDR evasion in Go assembly
Cobalt Strike BOF that Add a user to localgroup by samr
一款支持自定义的 Java 内存马生成工具|A customizable Java in-memory webshell generation tool.
Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.
Nidhogg is an all-in-one simple to use windows kernel rootkit.
一次免杀实践(bypass 360、huorong、windows defender、kaspersky、)
Linux/Windows post-exploitation framework made by linux user
Tool for injecting a shared object into a Linux process
A slightly more fun way to disable windows defender + firewall. (through the WSC api)
A collaborative, multi-platform, red teaming framework
🌟 For when you really just want to serve some files over HTTP right now!