awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to cobbr/sharpsploit

Open-source alternatives to SharpSploit

30 open-source projects similar to cobbr/sharpsploit, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best SharpSploit alternative.

  • print3m/dllshimmerPrint3M avatar

    Print3M/DllShimmer

    749View on GitHub↗

    Weaponize DLL hijacking easily. Backdoor any function in any DLL without disrupting normal process operation.

    Go
    View on GitHub↗749
  • fireeye/officepurgefireeye avatar

    fireeye/OfficePurge

    263View on GitHub↗

    VBA purge your Office documents with OfficePurge. VBA purging removes P-code from module streams within Office documents. Documents that only contain source code and no compiled code are more likely to evade AV detection and YARA rules. Read more here .

    C#
    View on GitHub↗263
  • rvrsh3ll/msbuildapicallerrvrsh3ll avatar

    rvrsh3ll/MSBuildAPICaller

    155View on GitHub↗

    MSBuild Without MSBuild.exe

    C#
    View on GitHub↗155
  • xforcered/invisibilitycloakxforcered avatar

    xforcered/InvisibilityCloak

    429View on GitHub↗

    Proof-of-concept obfuscation toolkit for C# post-exploitation tools. This will perform the below actions for a C# visual studio project.

    Python
    View on GitHub↗429
  • phra/pezorphra avatar

    phra/PEzor

    2,111View on GitHub↗

    PEzor

    C
    View on GitHub↗2,111
  • rasta-mouse/threatcheckrasta-mouse avatar

    rasta-mouse/ThreatCheck

    1,409View on GitHub↗
    C#
    View on GitHub↗1,409

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • icyguider/shhhloadericyguider avatar

    icyguider/Shhhloader

    1,274View on GitHub↗

    Shhhloader is a work in progress shellcode loader. It takes raw shellcode as input and compiles a C++ stub that does a bunch of different things to try and bypass AV/EDR. The included python builder will work on any Linux system that has Mingw-w64 installed.

    Python
    View on GitHub↗1,274
  • med0x2e/gadgettojscriptmed0x2e avatar

    med0x2e/GadgetToJScript

    1,123View on GitHub↗

    A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA scripts. The current gadget triggers a call to Activator.CreateInstance() when deserialized using BinaryFormatter from jscript/vbscript/vba, this…

    C#
    View on GitHub↗1,123
  • sensepost/rulersensepost avatar

    sensepost/ruler

    2,306View on GitHub↗

    A tool to abuse Exchange services

    Go
    View on GitHub↗2,306
  • thewover/donutTheWover avatar

    TheWover/donut

    4,461View on GitHub↗

    Donut is a toolset for loading and executing payloads in memory, featuring a position-independent shellcode generator, an in-memory payload injector, and a .NET assembly loader. It is designed to convert executable files and scripts into shellcode that can be executed within the memory space of a remote process without writing files to disk. The project specializes in security evasion through memory-based patching and payload obfuscation using symmetric block ciphers and compression. It includes a remote payload stager to retrieve encrypted modules from HTTP or DNS servers during runtime, red

    C
    View on GitHub↗4,461
  • optiv/ivyoptiv avatar

    optiv/Ivy

    744View on GitHub↗

    To view the latest version of Ivy or to submit an issue, reference https://github.com/Tylous/Ivy.

    Go
    View on GitHub↗744
  • outflanknl/inlinewhispersoutflanknl avatar

    outflanknl/InlineWhispers

    320View on GitHub↗

    A Proof of Concept for weaponizing SysWhispers for making direct system calls in Cobalt Strike Beacon Object File.

    Assembly
    View on GitHub↗320
  • aaaddress1/xlsgenaaaddress1 avatar

    aaaddress1/xlsGen

    44View on GitHub↗

    Tiny Excel BIFF8 Generator, to Embedded 4.0 Macros in *.xls

    C#
    View on GitHub↗44
  • rasta-mouse/ruralbishoprasta-mouse avatar

    rasta-mouse/RuralBishop

    108View on GitHub↗

    RuralBishop is practically a carbon copy of UrbanBishop by b33f, but all P/Invoke calls have been replaced with D/Invoke.

    C#
    View on GitHub↗108
  • byt3bl33d3r/sprayingtoolkitbyt3bl33d3r avatar

    byt3bl33d3r/SprayingToolkit

    1,574View on GitHub↗

    Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient

    Python
    View on GitHub↗1,574
  • 0xsp-srd/mortar0xsp-SRD avatar

    0xsp-SRD/mortar

    1,506View on GitHub↗

    evasion technique to defeat and divert detection and prevention of security products (AV/EDR/XDR)

    Pascal
    View on GitHub↗1,506
  • fuzzysecurity/dendrobateFuzzySecurity avatar

    FuzzySecurity/Dendrobate

    134View on GitHub↗

    Dendrobate is a framework that facilitates the development of payloads that hook unmanaged code through managed .NET code. To do this Dendrobate uses EasyHook and packs the injected component, Dendron, using Fody & Costura . This is all done automatically so all you need to do when you compile…

    C#
    View on GitHub↗134
  • gloxec/crossc2gloxec avatar

    gloxec/CrossC2

    2,559View on GitHub↗

    generate CobaltStrike's cross-platform payload

    Candroidcobalt-strikecross-platform
    View on GitHub↗2,559
  • d00mfist/mystikalD00MFist avatar

    D00MFist/Mystikal

    326View on GitHub↗

    macOS Initial Access Payload Generator

    Python
    View on GitHub↗326
  • bats3c/darkarmourbats3c avatar

    bats3c/darkarmour

    862View on GitHub↗

    Store and execute an encrypted windows binary from inside memory, without a single bit touching disk.

    Python
    View on GitHub↗862
  • klezvirus/inceptorklezVirus avatar

    klezVirus/inceptor

    1,805View on GitHub↗

    :triangularflagon_post: This is the public repository of Inceptor, for latest version and updates please consider supporting us through https://porchetta.industries/

    Assembly
    View on GitHub↗1,805
  • lgandx/responderlgandx avatar

    lgandx/Responder

    6,335View on GitHub↗

    Responder is a network penetration testing tool that intercepts and spoofs link-local name resolution queries, including LLMNR, NBT-NS, and mDNS, to redirect traffic to an attacker-controlled host. It hosts rogue protocol servers for over 15 protocols, capturing authentication credentials during challenge-response handshakes, and stores captured hashes and cleartext credentials in a SQLite database for structured offline analysis. The tool distinguishes itself through its ability to relay captured NTLM authentication challenges to target services for lateral movement without cracking the hash

    Python
    View on GitHub↗6,335
  • 9emin1/charlotte9emin1 avatar

    9emin1/charlotte

    977View on GitHub↗

    c++ fully undetected shellcode launcher ;)

    Python
    View on GitHub↗977
  • optiv/freezeoptiv avatar

    optiv/Freeze

    1,477View on GitHub↗

    To view the latest version of Freeze or to submit an issue, reference https://github.com/Tylous/Freeze.

    Go
    View on GitHub↗1,477
  • byt3bl33d3r/crackmapexecbyt3bl33d3r avatar

    byt3bl33d3r/CrackMapExec

    9,144View on GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    View on GitHub↗9,144
  • optiv/scarecrowoptiv avatar

    optiv/ScareCrow

    2,888View on GitHub↗

    To view the latest version of ScareCrow or to submit an issue, reference https://github.com/Tylous/ScareCrow.

    Go
    View on GitHub↗2,888
  • fireeye/duedlligencefireeye avatar

    fireeye/DueDLLigence

    484View on GitHub↗

    Shellcode runner framework for application whitelisting bypasses and DLL side-loading. The shellcode included in this project spawns calc.exe.

    C#
    View on GitHub↗484
  • rhinosecuritylabs/pacuRhinoSecurityLabs avatar

    RhinoSecurityLabs/pacu

    5,234View on GitHub↗

    Pacu is an exploitation framework designed for auditing and testing the security of Amazon Web Services environments. It serves as a cloud penetration testing tool and resource enumerator used to identify misconfigurations, map attack surfaces, and execute privilege escalation paths. The framework provides specialized capabilities for post-exploitation and red team operations, including establishing persistence through identity and access management backdooring. It distinguishes itself with a plugin-based module system that allows for the development of custom tasks and the orchestration of A

    Python
    View on GitHub↗5,234
  • malwaredllc/byobmalwaredllc avatar

    malwaredllc/byob

    9,478View on GitHub↗

    This project is a post-exploitation framework and command and control platform designed for security research and penetration testing. It functions as a remote access tool consisting of a central command server and encrypted executable payloads that establish reverse shell connections. The system utilizes a web-based dashboard for multi-client administration, allowing for remote host monitoring and direct shell access through an in-browser terminal. It generates cross-platform, encrypted binaries that employ a multi-stage delivery chain and a key exchange mechanism to secure communications.

    Python
    View on GitHub↗9,478
  • k8gege/ladonk8gege avatar

    k8gege/Ladon

    5,297View on GitHub↗

    Ladon is an internal network penetration scanner and vulnerability assessment tool designed to identify high-risk security flaws and assets across network segments. It operates as a fileless security scanner, executing its engine and modules directly in memory to avoid leaving a disk footprint on target systems. The project is distinguished by its integration as a plugin for command beacons, specifically within the Cobalt Strike framework. This allows for memory-resident network discovery and vulnerability detection. It further supports stealth operations through payload and script obfuscatio

    C#brute-forceexpexploit
    View on GitHub↗5,297