injectEtwBypass
by boku7
CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)
AI summary
ETW bypass tool
Tool to bypass ETW (Event Tracing for Windows) security measure in remote processes by injecting a custom syscall
- stars
- 276
- forks
- 55
- watching
- 7
Similar projects
Found by comparing what the projects do, not just their names.
AMSIBypass Tool
A tool that bypasses AMSI in a remote process with code injection.
System info BOF
A Cobalt Strike Beacon Object File (BOF) that uses custom syscaller code to make direct system calls to retrieve process information on the target system.
boku7/spawn440
Process spawner
A Cobalt Strike Beacon tool that spawns a sacrificial process to execute shellcode, using techniques like Arbitrary Code Guard and PPID spoofing to evade detection.
boku7/hollow267
Shellcode injector
A tool that enables remote process shellcode execution using the Early Bird injection technique
UAC bypass tool
A tool that bypasses UAC restrictions on Windows by deserializing and executing malicious code in Event Viewer.
Payload loader
Loads and executes a malicious payload in a Windows system using PowerShell.
UAC Bypass Tool
Tools and techniques to bypass Windows UAC restrictions on executable files by utilizing DCOM objects
AV bypass tool
A tool for creating shellcode bypasses of antivirus software
Application whitelist bypass list
A centralized resource for bypassing Windows Device Guard Application Whitelisting (WDAC) policies.
Header injector
An extension that automatically adds headers to Burp requests to bypass certain Web Application Firewall products.
Intrusion tool
An aggressor script that allows Cobalt Strike to perform process injection and persistence by leveraging direct syscalls to bypass EDR/AV systems.
Vulnerability exploitation toolkit
A collection of tools and techniques for exploiting vulnerabilities in software applications.
Web security testing toolkit
A comprehensive collection of tools and techniques for web application security testing and exploitation
Clipboard injection tool
A tool that injects malicious code into the clipboard window of a remote process to execute custom shellcode
UAC bypass technique
A technique to bypass Windows UAC security restrictions using a DLL planting method for executing malicious code in high integrity processes.