v4nyl's repositories

Black-Angel-Rootkit

Black Angel is a Windows 11/10 x64 kernel mode rootkit. Rootkit can be loaded with enabled DSE while maintaining its full functionality.

License:GPL-3.0Stargazers:0Issues:0Issues:0

blacklotus

A attempt at replicating BLACKLOTUS capabilities, whilst not acting as a direct mimic.

Stargazers:0Issues:0Issues:0

BlackLotus-leak

BlackLotus UEFI Windows Bootkit

Stargazers:0Issues:0Issues:0

Blog-Lab

Source files for my posts

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

bootdoor-1

An initial proof of concept of a bootkit based on Cr4sh's DMABackdoorBoot

Language:CStargazers:0Issues:0Issues:0

bootlicker

A generic UEFI bootkit used to achieve initial usermode execution. It works with modifications.

Language:CStargazers:0Issues:0Issues:0

CaveCarver

CaveCarver - PE backdooring tool which utilizes and automates code cave technique

License:MITStargazers:0Issues:0Issues:0

ClipboardHistoryThief

POC tool to extract all persistent clipboard history data from clipboard service process memory

License:MITStargazers:0Issues:0Issues:0

CVE-2022-37969

Windows LPE exploit for CVE-2022-37969

Language:C++Stargazers:0Issues:0Issues:0

dcomhijack

Lateral Movement Using DCOM and DLL Hijacking

License:MITStargazers:0Issues:0Issues:0

DropSpawn_BOF

CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

EntropyReducer

Reduce Entropy And Obfuscate Youre Payload With Serialized Linked Lists

License:Apache-2.0Stargazers:0Issues:0Issues:0

Forensia

Anti Forensics Tool For Red Teamers, Used For Erasing Footprints In The Post Exploitation Phase.

License:GPL-3.0Stargazers:0Issues:0Issues:0

GeoWordlists

GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.

Language:PythonStargazers:0Issues:0Issues:0

GodPotato_CLR

A Custom CLR Assembly for MSSQL of the popular tool GodPotato

Stargazers:0Issues:0Issues:0

HiddenDesktop

HVNC for Cobalt Strike

License:MITStargazers:0Issues:0Issues:0

Jormungandr

Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.

License:BSD-2-ClauseStargazers:0Issues:0Issues:0

Kraken

Kraken, a modular multi-language webshell coded by @secu_x11

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

MagicSigner

Signtool for expired certificates

License:0BSDStargazers:0Issues:0Issues:0

Malleable-CS-Profiles

A list of python tools to help create an OPSEC-safe Cobalt Strike profile.

Stargazers:0Issues:0Issues:0

MemFiles

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

Stargazers:0Issues:0Issues:0

OffensivePipeline

OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.

Language:C#License:GPL-3.0Stargazers:0Issues:0Issues:0

rogue

A barebones template of 'rogue' aka a simple recon and agent deployment I built to communicate over ICMP. Well, without the ICMP code.

Stargazers:0Issues:0Issues:0

serviceDetector

Detect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin privileges.

Stargazers:0Issues:0Issues:0

sleepmask_ekko_cfg

Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process

Stargazers:0Issues:0Issues:0

titanldr-ng

A newer iteration of TitanLdr with some newer hooks, and design. A generic user defined reflective DLL I built to prove a point to Mudge years ago.

Stargazers:0Issues:0Issues:0

Winsocky

Winsocket for Cobalt Strike.

Stargazers:0Issues:0Issues:0

WMIExec

Set of python scripts which perform different ways of command execution via WMI protocol.

Stargazers:0Issues:0Issues:0