8000 k3lpi3b4nsh33 (Leviathan) / Starred · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
View k3lpi3b4nsh33's full-sized avatar

Block or report k3lpi3b4nsh33

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

This a method of using WorkItem API to queue them to load a module. This version was modified to support string hashing via CRC32B.

C 1 1 Updated Mar 5, 2025

miscellaneous scripts and programs

C 243 68 Updated Jan 23, 2025

The LLVM Project is a collection of modular and reusable compiler and toolchain technologies.

LLVM 32,430 13,469 Updated May 17, 2025

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Python 1,427 181 Updated Jul 31, 2024

Inline syscalls made easy for windows on clang

C++ 705 86 Updated Jun 21, 2024
C# 332 37 Updated Feb 5, 2025

Ghosting-AMSI

PowerShell 169 25 Updated Apr 24, 2025

A modern c++ implementation of windows heavens gate

C++ 222 41 Updated Sep 19, 2020

PoC: Rebuild A New Path Back to the Heaven's Gate (HITB 2021)

C++ 106 25 Updated May 27, 2021

ShellWasp is a tool to help build shellcode that utilizes Windows syscalls, while overcoming the portability problem associated with Windows syscalls. ShellWasp is built for 32-bit, WoW64. ShellWas…

Python 167 23 Updated Aug 1, 2023

A library for detecting known secrets across many web frameworks

Python 630 56 Updated May 13, 2025

A technique to run binaries filelessly and stealthily on Linux by "overwriting" the shell's process with another.

Shell 841 87 Updated Mar 21, 2025

Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection

Assembly 114 29 Updated May 14, 2025

Go ransomware util AB83 ising ChaCha20 and ECIES encryption.

Go 14 32 Updated Jul 3, 2024

🧙‍♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications

JavaScript 1,022 168 Updated May 14, 2025

An example reference design for a proposed BOF PE

C++ 163 16 Updated Apr 17, 2025

Injects HTML/PHP/ASP to the PE

C 100 19 Updated Jul 23, 2020

GO Simple Tunnel - a simple tunnel written in golang

Go 16,739 2,550 Updated Dec 31, 2024

A PoC for adding NtContinue to CFG allowed list in order to make Ekko work in a CFG protected process

C 100 18 Updated Aug 29, 2022

Sleep obfuscation

C++ 222 32 Updated Dec 13, 2024

Reflective x64 PE/DLL Loader implemented using Dynamic Indirect Syscalls

C++ 369 59 Updated Oct 8, 2024

Sign-Sacker(签名掠夺者):一款数字签名复制器,可将其他官方exe中数字签名,图标,详细信息复制到没有签名的exe中,作为免杀,权限维持,伪装的一种小手段。

Python 559 86 Updated Jan 4, 2024

PE to shellcode

Python 198 37 Updated Jan 1, 2025

This comprehensive process injection series is crafted for cybersecurity enthusiasts, researchers, and professionals who aim to stay at the forefront of the field. It serves as a central repository…

C++ 377 67 Updated Dec 7, 2024

Converts PE into a shellcode

C++ 2,538 452 Updated Aug 15, 2023

Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles

Python 388 33 Updated Apr 6, 2023

Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.

C++ 1,612 275 Updated Mar 4, 2023

Vim-fork focused on extensibility and usability

Vim Script 89,594 6,089 Updated May 17, 2025
Next
0