


PowerSploit - A PowerShell Post-Exploitation Framework

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

A reference of Windows API function calls, including functions for file operations, process management, memory management, thread management,…

Extracting Clear Text Passwords from mstsc.exe using API Hooking.

Reflective PE packer.

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.

Cooolis-ms是一个包含了Metasploit Payload Loader、Cobalt Strike External C2 Loader、Reflective DLL injection的代码执行工具,它的定位在于能够在静态查杀上规避一些我们将要执行且含有特征的代码,帮助红队人员更方便快…

Autoelevate DLL search-order hijacking UAC bypass for x64 Windows 7–11, abusing 32-bit iscsicpl.exe via SysWOW64 to execute code without a UAC prompt.

A C2 post-exploitation framework

PE loader with various shellcode injection techniques

For when DLLMain is the only way

Inject DLLs into the explorer process using icons

Rusty Injection - Shellcode Reflective DLL Injection (sRDI) in Rust (Codename: Venom)

A Bind Shell Using the Fax Service and a DLL Hijack

Lateral Movement Using DCOM and DLL Hijacking