
SysWhispers3
SysWhispers on Steroids - AV/EDR evasion via direct system calls.

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

Obfuscates JavaScript and Node.js code with variable renaming, string encryption, control flow flattening, and anti-debugging to protect source code…

Header-only Windows x64 indirect syscall library. Zero CRT, zero IAT, VEH anti-BP, AMSI/ETW bypass, W^X memory, per-call dynamic stubs.

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Collection of various malicious functionality to aid in malware development

Nim-based encryption tool for obfuscating shellcode and payloads for evading Windows Defender.

A BYOSI (Bring-Your-Own-Script-Interpreter) Rapid Payload Deployment Toolkit

Curated collection of EDR bypass resources including PoCs, tools, workshops, presentations, and blogs for ethical hacking and red team operations.

c++ fully undetected shellcode launcher ;)

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

.NET, PE, & Raw Shellcode Packer/Loader Written in Nim

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

A unique technique to execute binaries from a password protected zip

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

Create fake certs for binaries using windows binaries and the power of bat files