Skip to content
View coldfusion39's full-sized avatar
Block or Report

Block or report coldfusion39

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Beta Lists are currently in beta. Share feedback and report bugs.
Showing results

Use hardware breakpoints to spoof the call stack for both syscalls and API calls

C 171 29 Updated Jun 6, 2024

Signtool for expired certificates

C++ 432 46 Updated Jun 10, 2023

Example of using Sleep to create better named pipes.

41 3 Updated Jul 25, 2023

My implementation of the GIUDA project in C++

C++ 148 23 Updated Jul 25, 2023

This tiny project prevents the signtool from verifing cert time validity and let you sign your bin with outdated cert without changing system time manually

C++ 220 88 Updated Dec 14, 2018

Windows x64 kernel mode rootkit process hollowing POC.

C++ 178 25 Updated Jun 30, 2023

Experiment with d_olex's firmware and conducting "preboot" attack

C 15 8 Updated Jul 2, 2023

Anti Forensics Tool For Red Teamers, Used For Erasing Footprints In The Post Exploitation Phase.

C++ 712 74 Updated Jun 23, 2023

CobaltStrike BOF to spawn Beacons using DLL Application Directory Hijacking

C 214 26 Updated Jun 8, 2023

HVNC for Cobalt Strike

C 1,128 179 Updated Dec 7, 2023

old postex for grabbing a krbtgs for my current user

C 28 8 Updated Jun 8, 2023

A kernel vulnerability used to achieve arbitrary read-write on Windows prior to July 2022

C 98 30 Updated Nov 23, 2022

An unfinished DOUBLEPULSAR clone. Set to be redone at a later date

C 14 8 Updated Mar 20, 2023

A attempt at replicating BLACKLOTUS capabilities, whilst not acting as a direct mimic.

C 81 34 Updated Mar 23, 2023

An initial proof of concept of a bootkit based on Cr4sh's DMABackdoorBoot

C 58 18 Updated Mar 20, 2023

A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.

C 53 8 Updated May 2, 2023

idk man this was the default github name

C 35 5 Updated Apr 23, 2023

A bunch of scripts and code i wrote.

C 124 21 Updated Mar 17, 2024

A proof of concept I developed to improve Gargoyle back in 2018 to achieve true memory obfuscation from position independent code

C 33 15 Updated Mar 20, 2023

A newer iteration of TitanLdr with some newer hooks, and design. A generic user defined reflective DLL I built to prove a point to Mudge years ago.

C 145 50 Updated Mar 20, 2023

Improved version of EKKO by @5pider that Encrypts only Image Sections

C++ 105 24 Updated Feb 13, 2023

Code snippets to add on top of cobalt strike sleepmask kit so that ekko can work in a CFG protected process

C 38 9 Updated Mar 15, 2023

Machinegun is an advanced version of Metasploit's railgun, capable of reliably running arbitrary Windows API functions on a remote computer and getting the results to the attacker's machine.

C++ 2 2 Updated Apr 22, 2023

Living Off The Land Drivers

YARA 927 113 Updated Jun 28, 2024

Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature

C 93 8 Updated Feb 28, 2023

A light-weight first-stage C2 implant written in Nim.

Nim 738 100 Updated Mar 14, 2024

BOF implementation of @_EthicalChaos_'s ThreadlessInject project. A novel process injection technique with no thread creation, released at BSides Cymru 2023.

C 359 50 Updated Jan 9, 2024

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

C 387 56 Updated Apr 8, 2024
Next