A variation of ProcessOverwriting to execute shellcode on an executable’s section For a more detailed explanation you can read my …
Dvenom – Tool That Provides An Encryption Wrapper And Loader For Your Shellcode
Double Venom (DVenom) is a tool that helps red teamers bypass AVs by providing an encryption wrapper and loader for …
Shoggoth – Asmjit Based Polymorphic Encryptor
Shoggoth is an open-source project based on C++ and asmjit library used to encrypt given shellcode, PE, and COFF files …
AVIator – Antivirus Evasion Project
AviAtor Ported to NETCore 5 with an updated UI About://name AV: AntiVirus Ator: Is a swordsman, alchemist, scientist, magician, scholar, …
laZzzy – Shellcode Loader, Developed Using Different Open-Source Libraries, That Demonstrates Different Execution Techniques
laZzzy is a shellcode loader that demonstrates different execution techniques commonly employed by malware. laZzzy was developed using different open-source …
SharpImpersonation – A User Impersonation Tool – Via Token Or Shellcode Injection
This was a learning by doing project from my side. Well known techniques are used to built just another impersonation …
Dlinject – Inject A Shared Library (I.E. Arbitrary Code) Into A Live Linux Process, Without Ptrace
Inject a shared library (i.e. arbitrary code) into a live linux process, without ptrace. Inspired by Cexigua and linux-inject, among …
Nim-Loader – WIP Shellcode Loader In Nim With EDR Evasion Techniques
a very rough work-in-progress adventure into learning nim by cobbling resources together to create a shellcode loader that implements common …
SharpEventPersist – Persistence By Writing/Reading Shellcode From Event Log
Persistence by writing/reading shellcode from Event Log. Usage The SharpEventPersist tool takes 4 case-sensitive parameters: -file “C:\path\to\shellcode.bin” -instanceid 1337 -source …
NimPackt-v1 – Nim-based Assembly Packer And Shellcode Loader For Opsec And Profit
By Cas van Cooten (@chvancooten) With special thanks to Marcello Salvati (@byt3bl33der) and Fabian Mosch (@S3cur3Th1sSh1t) Description Update: NimPackt-v1 is …