injectAmsiBypass

AMSIBypass Tool

A tool that bypasses AMSI in a remote process with code injection.

Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.

GitHub

377 stars
12 watching
68 forks
Language: C
last commit: over 3 years ago

Related projects:

RepositoryDescriptionStars
boku7/injectetwbypassTool to bypass ETW (Event Tracing for Windows) security measure in remote processes by injecting a custom syscall276
boku7/hollowA tool that enables remote process shellcode execution using the Early Bird injection technique267
boku7/halosgate-psA Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.95
baiyies/screenshotbofplusA tool designed to capture screenshots without injection on Windows systems using a Buffer Overflow (BOF) technique, intended for use in the context of Cobalt Strike.175
apokryptein/secinjectA tool for injecting malicious code into processes using native APIs and memory section mapping.88
nvisosecurity/cobaltwhispersAn aggressor script that allows Cobalt Strike to perform process injection and persistence by leveraging direct syscalls to bypass EDR/AV systems.229
boku7/spawnA Cobalt Strike Beacon tool that spawns a sacrificial process to execute shellcode, using techniques like Arbitrary Code Guard and PPID spoofing to evade detection.440
0x3rhy/adduser-bofA Cobalt Strike BOF that exploits a vulnerability to add an admin user70
pizz33/gobypassav-shellcodeA tool for creating shellcode bypasses of antivirus software823
tomcarver16/bof-dll-injectA tool for injecting malware into processes by mapping it to memory without registering it with the kernel.147
airbus-cert/invoke-bofLoads and executes a malicious payload in a Windows system using PowerShell.245
netero1010/trustedpath-uacbypass-bofTools and techniques to bypass Windows UAC restrictions on executable files by utilizing DCOM objects119
cobalt-strike/bof-vsA Beacon Object File Visual Studio template project for creating malicious code executables145
passthehashbrowns/bofmaskA proof-of-concept project demonstrating how to mask Beacon's payload execution in Cobalt Strike while executing a user-provided BOF.110
mlcsec/asrenum-bofTools to detect and exploit vulnerabilities in Windows Attack Surface Reduction (ASR) settings142