
Darkcloak
Linux process identity cloaking tool that spoofs comm, argv, cmdline, environ, exe path, and VMAs via an 11-phase prctl pipeline to impersonate…
binary-analysisfingerprint-spoofingids-ips-evasion+6
12

Linux process identity cloaking tool that spoofs comm, argv, cmdline, environ, exe path, and VMAs via an 11-phase prctl pipeline to impersonate…

C# Reflective loader for unmanaged binaries.

A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

Stop Windows Defender programmatically

A windows token impersonation tool

A DNS spoofer tool written in Python3.

Spoof SSDP replies and create fake UPnP devices to phish for credentials and NetNTLM challenge/response.