SharpShooter Logo

SharpShooter

0
Free
Visit Website

SharpShooter is a payload creation framework for the retrieval and execution of arbitrary CSharp source code. It leverages James Forshaw's DotNetToJavaScript tool to invoke methods from the SharpShooter DotNet serialised object. Payloads can be retrieved using Web or DNS delivery or both; SharpShooter is compatible with the MDSec ActiveBreach PowerDNS project. Alternatively, stageless payloads with embedded shellcode execution can also be generated for the same scripting formats. SharpShooter payloads are RC4 encrypted with a random key to provide some modest anti-virus evasion, and the project includes the capability to integrate sandbox detection and environment keying to assist in evading detection. SharpShooter includes a predefined CSharp template for executing shellcode with staged and staged payloads.

FEATURES

ALTERNATIVES

A Yara ruleset for detecting PHP shells and other webserver malware.

Java decompiler for modern Java features up to Java 14.

A Burp intruder extender for automating and validating XSS vulnerabilities

Generates a YARA rule to match basic blocks of the current function in IDA Pro

A developer added malicious code to a popular open-source package, wiping files on computers in Russia and Belarus as a protest.

A new age tool for binary analysis that uses statistical visualizations to help find patterns in large amounts of binary data.

Andromeda makes reverse engineering of Android applications faster and easier.

Debugger and .NET assembly editor with advanced debugging features.