awesome-repositories.com
Blog
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetÀ proposNotre méthodologiePresseServeur MCP
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to fuzzysecurity/sharp-suite

Open-source alternatives to Sharp Suite

30 open-source projects similar to fuzzysecurity/sharp-suite, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Sharp Suite alternative.

  • lolbas-project/lolbasAvatar de LOLBAS-Project

    LOLBAS-Project/LOLBAS

    8,323Voir sur GitHub↗

    LOLBAS is a curated database and knowledge base of signed Windows binaries that can be misused to bypass security restrictions and execute unauthorized code. It serves as a technical registry that maps trusted system files to their functional capabilities and the offensive tactics they enable. The project distinguishes itself by providing a capability-driven indexing system and a tactics registry that relates legitimate binary functionality to known security evasion techniques. It includes an association layer that links specific system binaries to attack patterns and tactical objectives, pro

    XSLTblueteamdfirliving-off-the-land
    Voir sur GitHub↗8,323
  • trustedsec/unicornAvatar de trustedsec

    trustedsec/unicorn

    3,917Voir sur GitHub↗

    Unicorn is a collection of utilities for generating malicious HTA files, VBA macros, encoded PowerShell commands, and memory-resident shellcode injection frameworks. It provides tools to create payloads designed to achieve remote code execution by bypassing security controls. The project focuses on weaponizing office documents through VBA macros and formulas, generating HTA attack vectors, and creating encoded PowerShell payloads. It includes a shellcode injection framework to wrap external shellcode for direct execution in system memory. The toolkit covers binary-to-base64 conversion for ce

    Python
    Voir sur GitHub↗3,917
  • 3xpl01tc0d3r/processinjectionAvatar de 3xpl01tc0d3r

    3xpl01tc0d3r/ProcessInjection

    1,248Voir sur GitHub↗

    This program is designed to demonstrate various process injection techniques

    C#
    Voir sur GitHub↗1,248
  • api0cradle/ultimateapplockerbypasslistAvatar de api0cradle

    api0cradle/UltimateAppLockerByPassList

    2,067Voir sur GitHub↗

    The goal of this repository is to document the most common techniques to bypass AppLocker.

    PowerShell
    Voir sur GitHub↗2,067

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Find more with AI search
  • aptortellini/undefenderAvatar de APTortellini

    APTortellini/unDefender

    360Voir sur GitHub↗

    unDefender is the C++ implementation of a technique originally described by @jonasLyk in this Twitter thread. At its core, this technique revolves around changing the \Device\BootDevice symbolic link in the Windows Object Manager so that when Defender's WdFilter driver is unloaded and loaded…

    C++
    Voir sur GitHub↗360
  • arno0x/shellcodewrapperA

    Arno0x/ShellcodeWrapper

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • bats3c/evtmuteAvatar de bats3c

    bats3c/EvtMute

    264Voir sur GitHub↗

    This is a tool that allows you to offensively use YARA to apply a filter to the events being reported by windows event logging.

    C#
    Voir sur GitHub↗264
  • djhohnstein/scatterbrainD

    djhohnstein/ScatterBrain

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • c-sto/bananaphoneC

    C-Sto/BananaPhone

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • ccob/sharpblockAvatar de CCob

    CCob/SharpBlock

    1,163Voir sur GitHub↗
    C#
    Voir sur GitHub↗1,163
  • cerbersec/killdefenderbofAvatar de Cerbersec

    Cerbersec/KillDefenderBOF

    236Voir sur GitHub↗

    KillDefenderBOF is a Beacon Object File PoC implementation of pwn1sher/KillDefender which is based on research by Gabriel Landau. The article can be found here.

    C
    Voir sur GitHub↗236
  • choisg/uuidshellcodeexecC

    ChoiSG/UuidShellcodeExec

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • cribdragg3r/alarisC

    cribdragg3r/Alaris

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • d00mfist/go4arunD

    D00MFist/Go4aRun

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • djhohnstein/csharpsetthreadcontextD

    djhohnstein/CSharpSetThreadContext

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • bats3c/darkloadlibraryAvatar de bats3c

    bats3c/DarkLoadLibrary

    1,180Voir sur GitHub↗

    LoadLibrary for offensive operations

    C
    Voir sur GitHub↗1,180
  • flangvik/netloaderAvatar de Flangvik

    Flangvik/NetLoader

    849Voir sur GitHub↗

    Loads any C# binary from filepath or url, patching AMSI and unhooks ETW

    C#
    Voir sur GitHub↗849
  • getrektboy724/sharpunhookerAvatar de GetRektBoy724

    GetRektBoy724/SharpUnhooker

    408Voir sur GitHub↗

    C# Based Universal API Unhooker - Automatically Unhook API Hives (ntdll.dll, kernel32.dll, advapi32.dll, and kernelbase.dll). SharpUnhooker helps you to evades user-land monitoring done by AVs and/or EDRs by cleansing/refreshing API DLLs that loaded on the process (Offensive Side) or remove API…

    C#
    Voir sur GitHub↗408
  • hlldz/invoke-phant0mH

    hlldz/Invoke-Phant0m

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • hlldz/phant0mAvatar de hlldz

    hlldz/Phant0m

    1,807Voir sur GitHub↗

    Svchost is essential in the implementation of so-called shared service processes, where a number of services can share a process in order to reduce resource consumption. Grouping multiple services into a single process conserves computing resources, and this consideration was of particular…

    C
    Voir sur GitHub↗1,807
  • hlldz/reflexxionAvatar de hlldz

    hlldz/RefleXXion

    500Voir sur GitHub↗

    RefleXXion is a utility designed to aid in bypassing user-mode hooks utilised by AV/EPP/EDR etc. In order to bypass the user-mode hooks, it first collects the syscall numbers of the NtOpenFile, NtCreateSection, NtOpenSection and NtMapViewOfSection found in the LdrpThunkSignature array. After…

    C++
    Voir sur GitHub↗500
  • johnwoodman/stealthinjectorJ

    JohnWoodman/stealthInjector

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • jthuraisamy/syswhispers2J

    jthuraisamy/SysWhispers2

    0Voir sur GitHub↗

    SysWhispers helps with evasion by generating header/ASM files implants can use to make direct system calls.

    Voir sur GitHub↗0
  • kharos102/ntdllunpatcherAvatar de Kharos102

    Kharos102/NtdllUnpatcher

    151Voir sur GitHub↗

    Example code for EDR bypassing, please use this for testing blue team detection capabilities against this type of malware that will bypass EDR's userland hooks. Code is a bit spaghetti-like at the moment and serves only as a PoC. Not for malicious use. Note that this particular code was tested…

    C++
    Voir sur GitHub↗151
  • knownsec/shellcodeloaderAvatar de knownsec

    knownsec/shellcodeloader

    1,748Voir sur GitHub↗

    shellcodeloader

    C++
    Voir sur GitHub↗1,748
  • kyleavery/aceldrAvatar de kyleavery

    kyleavery/AceLdr

    1,020Voir sur GitHub↗

    A position-independent reflective loader for Cobalt Strike. Zero results from Hunt-Sleeping-Beacons, BeaconHunter, BeaconEye, Patriot, Moneta, PE-sieve, or MalMemDetect.

    C
    Voir sur GitHub↗1,020
  • lem0nsec/shellghostAvatar de lem0nSec

    lem0nSec/ShellGhost

    1,199Voir sur GitHub↗

    A memory-based evasion technique which makes shellcode invisible from process start to end.

    C
    Voir sur GitHub↗1,199
  • antoniococo/mapping-injectionA

    antonioCoco/Mapping-Injection

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • mattifestation/ef0132ba4ae3cc136914da32a88106b9M

    mattifestation/ef0132ba4ae3cc136914da32a88106b9

    0Voir sur GitHub↗
    Voir sur GitHub↗0
  • 0xer3bus/poolpartybofAvatar de 0xEr3bus

    0xEr3bus/PoolPartyBof

    452Voir sur GitHub↗

    A beacon object file implementation of PoolParty Process Injection Technique by @SafeBreach and @0xDeku, that abuses Windows Thread Pools. The BOF supports the 5 technique/variant: - Insert TPIO work item to the target process's thread pool. - Insert TPALPC work item to the target process's…

    C
    Voir sur GitHub↗452