Skip to content
View hyperware1337's full-sized avatar
:shipit:
project is delayed.... 2027 January?
:shipit:
project is delayed.... 2027 January?
  • space time

Block or report hyperware1337

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Malware technology

Techniques
78 repositories

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT 8,322 1,115 Updated Dec 6, 2025

Small and highly portable detection tests based on MITRE's ATT&CK.

C 11,594 3,060 Updated Feb 19, 2026

Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes

C++ 1,040 173 Updated Jun 20, 2023

Migrate C code to Rust

Rust 4,641 293 Updated Feb 20, 2026

Useful C2 techniques and cheat sheets learned from engagements

579 96 Updated Sep 10, 2025

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++ 822 129 Updated Aug 23, 2021

BloodyAD is an Active Directory Privilege Escalation Framework

Python 2,089 196 Updated Jan 31, 2026

darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,免杀火绒,360核晶等国内常见杀软。

Go 879 120 Updated Oct 18, 2024

Rust for malware Development is a repository for advanced Red Team techniques and offensive malwares & Ransomwares, focused on Rust 🦀

Rust 3,299 210 Updated Feb 17, 2026

This map lists the essential techniques to bypass anti-virus and EDR

3,147 347 Updated Mar 28, 2025

Kernel rootkit, that lives inside the Windows registry values data

C 504 144 Updated Oct 8, 2017

CSLoader is a general purpose obfuscation and anti-virus tool based on a reimplementation of the llvm project obfuscator(https://github.com/obfuscator-llvm/obfuscator).

C++ 838 140 Updated Apr 2, 2025

Set of tools to analyze Windows sandboxes for exposed attack surface.

C# 2,266 453 Updated Nov 6, 2025

Kotoamatsukami is an obfuscator based on LLVM-17, utilizing LLVM's new pass to implement plug-in features, for obfuscating multiple languages and platforms.

C++ 61 13 Updated Mar 26, 2025

Multilayered AV/EDR Evasion Framework

C++ 892 138 Updated Sep 6, 2025

AdaptixC2 is a highly modular advanced redteam toolkit

C++ 2,717 492 Updated Feb 19, 2026

Dll injection through code page id modification in registry. Based on jonas lykk research

C++ 17 25 Updated Jun 18, 2022

Obfuscation LLVM 17

C++ 621 113 Updated Oct 8, 2024

no-defender re-up all credit goes to https://github.com/es3n1n/no-defender

2 2 Updated Jun 10, 2024
PowerShell 56 11 Updated Sep 14, 2023

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

C 1,820 239 Updated Nov 3, 2024

.NET assembly loader with patchless AMSI and ETW bypass

C 368 51 Updated Apr 19, 2023

免杀主流防病毒软件

C 188 24 Updated Oct 22, 2025

A project that demonstrates embedding shellcode payloads into image files (like PNGs) using Python and extracting them using C/C++. Payloads can be retrieved directly from the file on disk or from …

C++ 1 Updated Feb 17, 2025

This novel way of using NtQueueApcThreadEx by abusing the ApcRoutine and SystemArgument[0-3] parameters by passing a random pop r32; ret gadget can be used for stealthy code injection.

C 261 34 Updated Apr 29, 2023

Aggressor Script, Kits, Malleable C2 Profiles, External C2 and so on

PowerShell 583 104 Updated Nov 22, 2022

牛屎花 一款基于WEB界面的远程主机管理工具

Rust 893 158 Updated Jan 14, 2026

Cobalt Strike Malleable C2 Design and Reference Guide

1,748 302 Updated Dec 13, 2023

Nimbo-C2 is yet another (simple and lightweight) C2 framework

Nim 440 55 Updated Jan 29, 2026

C2 Powershell Command & Control Framework with BuiltIn Commands

PowerShell 503 102 Updated Mar 11, 2024