
ObfuscatedSharpCollection
Attempt at Obfuscated version of SharpCollection

Attempt at Obfuscated version of SharpCollection

Project Mantis: Hacking Back the AI-Hacker; Prompt Injection as a Defense Against LLM-driven Cyberattacks

Obex – Blocking unwanted DLLs in user mode

Apply a divide and conquer approach to bypass EDRs

Patch AMSI and ETW

Port of Cobalt Strike's Process Inject Kit

Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can…

CobaltWhispers is an aggressor script that utilizes a collection of Beacon Object Files (BOF) for Cobalt Strike to perform process injection,…


Improved version of EKKO by @5pider that Encrypts only Image Sections

Execute PowerShell code at the antimalware-light protection level.

C2 redirector base on caddy

A technique to coerce a Windows SQL Server to authenticate on an arbitrary machine.

Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.