awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to d1rkmtrr/dark-kill

Projects sharing features with Dark Kill

13 open-source projects similar to d1rkmtrr/dark-kill, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • powershellempire/empirePowerShellEmpire avatar

    PowerShellEmpire/Empire

    7,843View on GitHub↗

    Empire is a post-exploitation framework and command and control server designed to manage remote access agents. It provides a centralized system for coordinating these agents and executing specialized scripts across target systems. The project functions as a security evasion tool by adapting network communication patterns to bypass firewalls and monitoring tools. It utilizes a multi-language agent runtime and a modular plugin architecture to execute payloads across different operating systems. The framework covers a broad range of operational capabilities, including remote agent orchestratio

    PowerShell
    View on GitHub↗7,843
  • byt3bl33d3r/offensivenimbyt3bl33d3r avatar

    byt3bl33d3r/OffensiveNim

    3,033View on GitHub↗

    OffensiveNim is a red teaming framework and post-exploitation toolkit developed in Nim. It provides a collection of low-level primitives and a Windows API wrapper designed for offensive security operations, including malware development and shellcode loading. The project focuses on evasion and obfuscation through techniques such as API unhooking, direct system calls, and anti-debugging mechanisms. It features diverse payload delivery methods, including reflective binary loading, the execution of .NET assemblies via CLR hosting, and various shellcode injection techniques using fibers, COM obje

    Nim
    View on GitHub↗3,033
  • hahwul/dalfoxhahwul avatar

    hahwul/dalfox

    4,846View on GitHub↗

    Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site scripting vulnerabilities. It functions as an XSS vulnerability scanner that analyzes HTTP parameters and DOM structures to identify reflected, stored, and blind injection points. The project distinguishes itself by providing a Model Context Protocol server and a REST API, allowing artificial intelligence agents and remote interfaces to trigger and manage security scans programmatically. It utilizes a payload mutation engine and fingerprinting strategies to execute WAF evasion t

    Gobugbountybugbounty-toolcicd-pipeline
    View on GitHub↗4,846

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • klezvirus/inceptorklezVirus avatar

    klezVirus/inceptor

    1,805View on GitHub↗

    :triangularflagon_post: This is the public repository of Inceptor, for latest version and updates please consider supporting us through https://porchetta.industries/

    Assembly
    View on GitHub↗1,805
  • klezvirus/syswhispers3klezVirus avatar

    klezVirus/SysWhispers3

    1,643View on GitHub↗

    SysWhispers on Steroids - AV/EDR evasion via direct system calls.

    Python
    View on GitHub↗1,643
  • myzxcg/realblindingedrmyzxcg avatar

    myzxcg/RealBlindingEDR

    1,319View on GitHub↗

    中文介绍

    C++
    View on GitHub↗1,319
  • naksyn/pyramidnaksyn avatar

    naksyn/Pyramid

    769View on GitHub↗

    a tool to help operate in EDRs' blind spots

    Python
    View on GitHub↗769
  • netero1010/edrsilencernetero1010 avatar

    netero1010/EDRSilencer

    1,883View on GitHub↗

    Inspired by the closed source FireBlock tool FireBlock from MdSec NightHawk, I decided to create my own version and this tool was created with the aim of blocking the outbound traffic of running EDR processes using Windows Filtering Platform (WFP) APIs.

    C
    View on GitHub↗1,883
  • tanc7/exocet-av-evasiontanc7 avatar

    tanc7/EXOCET-AV-Evasion

    839View on GitHub↗

    AWS Certified Cloud Practitioner and Solutions Architect Associate changtan@listerunlimited.com

    Go
    View on GitHub↗839
  • wavestone-cdt/edrsandblastwavestone-cdt avatar

    wavestone-cdt/EDRSandblast

    1,823View on GitHub↗

    EDRSandBlast is a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections (Notify Routine callbacks, Object Callbacks and ETW TI provider) and LSASS protections. Multiple userland unhooking techniques are also implemented to evade userland monitoring.

    C
    View on GitHub↗1,823
  • yaxser/backstabYaxser avatar

    Yaxser/Backstab

    1,516View on GitHub↗

    Have these local admin credentials but the EDR is standing in the way? Unhooking or direct syscalls are not working against the EDR? Well, why not just kill it? Backstab is a tool capable of killing antimalware protected processes by leveraging sysinternals’ Process Explorer (ProcExp) driver,…

    C
    View on GitHub↗1,516
  • georgesotiriadis/chimerageorgesotiriadis avatar

    georgesotiriadis/Chimera

    506View on GitHub↗

    *

    Python
    View on GitHub↗506
  • jthuraisamy/syswhispers2J

    jthuraisamy/SysWhispers2

    0View on GitHub↗

    SysWhispers helps with evasion by generating header/ASM files implants can use to make direct system calls.

    View on GitHub↗0