
SysWhispers
AV/EDR evasion via direct system calls.

AV/EDR evasion via direct system calls.

C# porting of SysWhispers2. It uses SharpASM to find the code caves for executing the system call stub.

Indirect syscalls + DInvoke made simple.

Shellcode implementation of Reflective DLL Injection. Convert DLLs to position independent shellcode

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

Polymorphic binary encoder for offensive security payloads. Encodes shellcode with LFSR-based feedback loop, garbage instruction injection, and…


Dynamically invoke arbitrary unmanaged code

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall…

Convert shellcode into :sparkles: different :sparkles: formats!

A shellcode function to encrypt a running process image when sleeping.

Dynamic shellcode loader with sophisticated evasion capabilities

Go shellcode loader that combines multiple evasion techniques

PoC demonstrating a multi process injection chain aimed at remotely executing shellcode

Apply a divide and conquer approach to bypass EDRs

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

Nim Library for Offensive Security Development

Execute shellcode files with rundll32