Skip to content

My musings in C and offensive tooling

Notifications You must be signed in to change notification settings

sarvex/AQUARMOURY

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

63 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

AQUARMOURY

This is a tool suite consisting of miscellaneous offensive tooling aimed at red teamers/penetration testers to primarily aid in Defense Evasion TA0005

Goblin

First module released as part of the AQUARMOURY suite to disable Windows Event and Sysmon logging.

Check it out here.

Brownie

Framework to rapidly prototype DLL Hijacks.

Check it out here.

Wraith

A stealthy native loader to deliver Stage-1/Beaconing implant OR Stage-2/Post-Ex RAT in-memory covertly and securely.

Check it out here.

Shellycoat

A module to bypass UM/User-Mode/Ring-3 hooks utilised by security products and aid in evasion.

Check it out here.

Gnome

A module to drop'n'load drivers using NtLoadDriver instead of the noisy service creation driver loading.

Check it out here.

About

My musings in C and offensive tooling

Resources

Code of conduct

Security policy

Stars

Watchers

Forks

Packages

No packages published

Languages

  • C 81.1%
  • Python 10.9%
  • C++ 5.5%
  • C# 1.3%
  • Assembly 0.8%
  • Batchfile 0.4%