Skip to content
View sheepdog0x3e's full-sized avatar

Block or report sheepdog0x3e

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Leverage a legitimate WFP callout driver to prevent EDR agents from sending telemetry

C# 389 37 Updated Aug 2, 2024

RunPE adapted for x64 and written in C, does not use RWX

C 24 3 Updated May 18, 2024

Generic PE loader for fast prototyping evasion techniques

C 227 45 Updated Jul 2, 2024

IoctlHunter is a command-line tool designed to simplify the analysis of IOCTL calls made by userland software targeting Windows drivers.

Python 96 11 Updated Jan 17, 2024

Cobalt Strike BOF that Add a user to localgroup by samr

C 126 12 Updated Nov 30, 2022

一款高性能 HTTP 代理隧道工具 | A high-performance http proxy tunneling tool

Java 2,275 210 Updated Feb 20, 2025

Some Rust program I wrote while learning Malware Development

Rust 126 11 Updated Feb 4, 2025

Tunnel all your traffic over Websocket or HTTP2 - Bypass firewalls/DPI - Static binary available

Rust 4,657 395 Updated Feb 17, 2025

JavaScript payload and supporting software to be used as XSS payload or post exploitation implant to monitor users as they use the targeted application. Also includes a C2 for executing custom Java…

JavaScript 351 36 Updated Jan 14, 2025

A C# Solution Source Obfuscator for avoiding AV signatures with minimal user interaction. Powered by the Roslyn C# library.

C# 73 6 Updated Jul 1, 2020

PDF Files for Pentesting

523 77 Updated Oct 4, 2024

Python PDF Parser (Not actively maintained). Check out pdfminer.six.

Python 5,283 1,126 Updated Dec 7, 2022

Simple good performance byte pattern/PE signature scanner, allowing upwards of 5000MB/s per core (30000+MB/s with AVX) on modern hardware.

C# 86 16 Updated Aug 2, 2024

Shellcode loader generator with multiples features

Go 454 63 Updated Dec 31, 2024

A package for memory editing in go.

Go 40 7 Updated Aug 27, 2020
C++ 24 7 Updated Feb 1, 2025

Sample Rust Hooking Engine

Rust 36 4 Updated Apr 5, 2024

A BOF that runs unmanaged PEs inline

C 576 69 Updated Oct 23, 2024

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Go 12,016 1,644 Updated Feb 23, 2025

evilginx3 + gophish

Go 1,726 336 Updated Jun 15, 2024

Use a docx as a jinja2 template

Python 2,105 397 Updated Mar 6, 2025

Dump cookies and credentials directly from Chrome/Edge process memory

C++ 1,130 112 Updated Nov 26, 2024

Amazing whoami alternatives

C++ 139 17 Updated Mar 23, 2024

KDMapper is a simple tool that exploits iqvw64e.sys Intel driver to manually map non-signed drivers in memory

C++ 2,164 526 Updated Feb 9, 2025

Perfect DLL Proxying using forwards with absolute paths.

Python 262 26 Updated Oct 9, 2024

DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly

C++ 59 11 Updated Mar 19, 2024

DLL proxying for lazy people

Rust 151 20 Updated Dec 3, 2024

Various resources to enhance Cobalt Strike's functionality and its ability to evade antivirus/EDR detection

C++ 278 64 Updated May 17, 2024

Hide your P/Invoke signatures through other people's signed assemblies

C# 204 32 Updated Mar 10, 2024
Next