Skip to content
View Iconabc's full-sized avatar
😀
😀

Block or report Iconabc

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Disks for DMA

C 132 25 Updated Apr 28, 2021

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Python 1,567 197 Updated Jul 31, 2024

A CobaltStrike toolkit to write files produced by Beacon to memory instead of disk

C 473 65 Updated Jul 6, 2024

A Blind EDR Project for Educational Purposes

C 96 21 Updated Jan 18, 2025

A reflective DLL development template for the Rust programming language

Rust 111 12 Updated Nov 4, 2025

A cross platform C2/post-exploitation framework.

Rust 705 221 Updated Oct 8, 2022

基于Tinynuke修复得到的HVNC

C 188 59 Updated Sep 4, 2021

Compile a windows client

8 2 Updated Jan 21, 2024

[AdaptixC2] 多语言支持

C 17 2 Updated Oct 30, 2025

Prevent in-process process termination by patching exit APIs

C++ 62 4 Updated Nov 9, 2025

Evasive shellcode loader

C++ 398 65 Updated Oct 17, 2024

A POC of a new “threadless” process injection technique that works by utilizing the concept of DLL Notification Callbacks in local and remote processes.

C++ 464 83 Updated Aug 23, 2023

A proof of concept demonstrating the DLL-load proxying using undocumented Syscalls.

C 402 55 Updated Jan 11, 2026

demo unhooking functions in ntdll

Rust 28 13 Updated Jul 15, 2025

Build sneaky & malicious LNK files.

C# 158 15 Updated Jul 16, 2025

一款高性能 HTTP 代理隧道工具 | A high-performance http proxy tunneling tool

Java 1 Updated Nov 7, 2024

LSASS Credential Dumper that utilizes the Windows API, in-memory RC4 encryption and Base64 encoding, and HTTPS exfiltration.

C++ 13 6 Updated Jan 10, 2024

Just a git repo for the sleepmask detection rule i found in https://codex-7.gitbook.io/codexs-terminal-window/blue-team/detecting-cobalt-strike/sleep-mask-kit-iocs

YARA 16 1 Updated Jun 4, 2025

My collection of malware dev links

304 33 Updated Jun 11, 2025

An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memory.

C 486 67 Updated Dec 7, 2025

An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. Screenshot downloaded in memory.

C 2 Updated Apr 5, 2025

Multilayered AV/EDR Evasion Framework

C++ 875 138 Updated Sep 6, 2025

Cobalt Strike random C2 Profile generator

Python 684 89 Updated Jan 5, 2023

Replace the .txt section of the current loaded modules from \KnownDlls\

C 305 40 Updated Sep 28, 2022

A modern, portable, easy to use crypto library.

C 4 Updated Dec 25, 2025
C++ 11 1 Updated Feb 26, 2025

RunPE implementation with multiple evasive techniques (2)

C 265 36 Updated Sep 25, 2025

Move CS beacon to GPU memory when sleeping

C++ 5 1 Updated Nov 12, 2021

A post exploitation framework designed to operate covertly on heavily monitored environments

C 2,164 334 Updated Sep 29, 2021

Cobalt Strike User-Defined Reflective Loader with AV/EDR Evasion in mind

C 482 82 Updated Jul 12, 2023
Next