Code Monkey home page Code Monkey logo

Bobby Cooke's Projects

hellsgateppid icon hellsgateppid

Assembly HellGate implementation that directly calls Windows System Calls and displays the PPID of the explorer.exe process

hollow icon hollow

EarlyBird process hollowing technique (BOF) - Spawns a process in a suspended state, inject shellcode, hijack main thread with APC, and execute shellcode

homerent-sqli-rce icon homerent-sqli-rce

House Rental v1.0 suffers from an unauthenticated SQL Injection vulnerability allowing remote attackers to execute arbitrary code on the hosting webserver via sending a malicious POST request.

injectamsibypass icon injectamsibypass

Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.

injectetwbypass icon injectetwbypass

CobaltStrike BOF - Inject ETW Bypass into Remote Process via Syscalls (HellsGate|HalosGate)

librehealth-authrce icon librehealth-authrce

LibreHealth v2.0.0 suffers from an authenticated file upload vulnerability allowing remote attackers to gain remote code execution (RCE) on the hosting webserver via uploading a maliciously crafted image.

malleable-c2-profiles icon malleable-c2-profiles

Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use. These profiles work with Cobalt Strike 3.x.

msspray icon msspray

Password attacks and MFA validation against various endpoints in Azure and Office 365

ninja_uuid_runner icon ninja_uuid_runner

Module Stomping, No New Thread, HellsGate syscaller, UUID Shellcode Runner for x64 Windows 10!

nt5src icon nt5src

Source code of Windows XP (NT5). Leaks are not from me. I just extracted the archive and cabinet files.

onlinecoursereg-rce icon onlinecoursereg-rce

From 0 to Remote Code Execution - exploit development files for Online Course Registration Web Application RCE

osep-code-snippets icon osep-code-snippets

A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.

redlizard icon redlizard

RedLizard Rust TCP Reverse Shell Server/Client

scmkit icon scmkit

Source Code Management Attack Toolkit

slae32 icon slae32

Repo for all SLAE32 Exam Assignments

sourcepoint icon sourcepoint

SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.

spawn icon spawn

Cobalt Strike BOF that spawns a sacrificial process, injects it with shellcode, and executes payload. Built to evade EDR/UserLand hooks by spawning sacrificial process with Arbitrary Code Guard (ACG), BlockDll, and PPID spoofing.

stockmanagement-xss-login-credharvester icon stockmanagement-xss-login-credharvester

Reflected Cross-Site Scripting (XSS) vulnerability in 'index.php' login-portal webpage of SourceCodesters Stock Management System v1.0 allows remote attackers to harvest login credentials & session cookie via unauthenticated victim clicking malicious URL and entering credentials.

tailorms-rxss-keylogger icon tailorms-rxss-keylogger

Reflected Cross-Site Scripting (XSS) vulnerability in 'index.php' login-portal webpage of SourceCodesters Tailor Management System v1.0 allows remote attackers to harvest keys pressed via unauthenticated victim clicking malicious URL and typing.

talon icon talon

(Demo) 3rd party agent for Havoc

whereami icon whereami

Cobalt Strike Beacon Object File (BOF) that uses handwritten shellcode to return the process Environment strings without touching any DLL's.

x64win-addrdpadminshellcode icon x64win-addrdpadminshellcode

64bit Windows 10 shellcode that adds user BOKU:SP3C1ALM0V3 to the system and the localgroups Administrators & "Remote Desktop Users"

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.