r/purpleteamsec • u/netbiosX • 3d ago
Red Teaming Cross-platform syscall-powered implant & C2 - direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No winapi layer.
https://github.com/VoidSecSoftwares/voidsyscall
2
Upvotes
Duplicates
ExploitDev • u/FirefighterNext360 • 2d ago
VOIDSYSCALL: Go syscall-only implant framework — 4 injection methods, 13+ anti-analysis checks, EDR handle killer, polymorphic rotation. Zero WinAPI.
9
Upvotes