
RedLine-Stealer-C2-Defender-Bypass-Payload-Analysis
"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

HERCULES is a special payload generator that can bypass antivirus softwares.

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks

Red Teaming & Pentesting checklists for various engagements

A tool to abuse Exchange services

SharpSploit is a .NET post-exploitation library written in C#

A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.

Azazel is a userland rootkit based off of the original LD_PRELOAD technique from Jynx rootkit. It is more robust and has additional features, and…

👻 RAT (Remote Access Trojan) - Silent Botnet - Full Remote Command-Line Access - Download & Execute Programs - Spread Virus' & Malware

NTP-based backdoor for hardened networks, delivering and executing arbitrary shellcode via spoofed NTP traffic with optional persistence as a Windows…

A native backdoor module for Microsoft IIS (Internet Information Services)

A tool to transform Chromium browsers into a C2 Implant

Fully undetectable and evasive ransomware written in Rust, leveraging a BYOVD technique to disable AV/EDR solutions on the infected systems.

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

TCP Port Redirection Utility

Build a basic Command & Control botnet in C

Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths

BrowserBackdoor is an Electron Application with a JavaScript WebSocket Backdoor and a Ruby Command-Line Listener