Skip to content
View hyperware1337's full-sized avatar
:shipit:
project is delayed.... 2027 January?
:shipit:
project is delayed.... 2027 January?
  • space time

Block or report hyperware1337

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Malwarestuff

40 repositories

整合Pluto-Obfuscator和goron部分混淆,移植到LLVM-16.0.x,使用NewPassManager

C++ 135 19 Updated Aug 16, 2023

A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.

C 614 69 Updated Jan 2, 2025

Organized list of my malware development resources

1,699 185 Updated May 16, 2022

Process Ghosting - a PE injection technique, similar to Process Doppelgänging, but using a delete-pending file instead of a transacted file

C 684 123 Updated Mar 11, 2024

Automatic privilege escalation for misconfigured capabilities, sudo and suid binaries using GTFOBins.

Python 628 75 Updated Feb 20, 2026

Cobalt Strike Beacon Object File for bypassing UAC via the CMSTPLUA COM interface.

C 215 30 Updated Oct 9, 2022

ROP-based sleep obfuscation to evade memory scanners

Rust 1 Updated Feb 22, 2024

BOF combination of KillDefender and Backstab

C 167 36 Updated Mar 23, 2023

Automated .NET AppDomain hijack payload generation

Nim 129 19 Updated Feb 4, 2025

Syscall免杀

C 511 57 Updated Jun 21, 2024

Obfusheader.h is a portable header file for C++14 compile-time obfuscation.

C++ 975 121 Updated Aug 19, 2024

A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities

Python 699 91 Updated Oct 26, 2024

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

C++ 1,245 171 Updated Dec 11, 2023

Hide your P/Invoke signatures through other people's signed assemblies

C# 211 33 Updated Mar 10, 2024

Shaco is a linux agent for havoc

C 169 22 Updated Oct 25, 2023

Shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks

C 137 25 Updated Dec 22, 2024

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Go 13,535 1,744 Updated Feb 13, 2026

Cobalt Strike插件,用于快速生成免杀的可执行文件

914 124 Updated Jul 19, 2020

lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection

HTML 256 25 Updated Jan 29, 2026

掩日 - 免杀执行器生成工具

C# 2,758 406 Updated Aug 18, 2025

no-defender re-up all credit goes to https://github.com/es3n1n/no-defender

2 2 Updated Jun 10, 2024

Cobalt Strike User-Defined Reflective Loader with AV/EDR Evasion in mind

C 482 81 Updated Jul 12, 2023

This repo contains C/C++ snippets that can be handy in specific offensive scenarios.

C++ 758 95 Updated Jan 26, 2025

Offensive tooling notes and experiments in AutoIt v3 (https://www.autoitscript.com/site/autoit/)

AutoIt 447 61 Updated Feb 24, 2022

Replace the .txt section of the current loaded modules from \KnownDlls\

C 305 41 Updated Sep 28, 2022

Demonized Shell is an Advanced Tool for persistence in linux.

Shell 436 66 Updated Jan 5, 2025

This is a repo of Malware Developement Workshop that I hosted with Nexus Security Club, it contains the modules and also the slides. If you are beginner in MalDev you can check the content to learn…

C++ 11 3 Updated Feb 26, 2025

BCS(北京网络安全大会)2019 红队行动会议重点内容

819 230 Updated Sep 4, 2019

Pack/Encrypt/Obfuscate ELF + SHELL scripts

Shell 434 52 Updated Dec 9, 2025

ForsHops

C++ 152 15 Updated Mar 25, 2025