BishopFox / asminject
Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86, and ARM32 Linux processes without the use of ptrace by accessing /proc/<pid>/mem. Useful for certain post-exploitation scenarios, recovering content from process memory, etc..
☆127Updated 2 years ago
Alternatives and similar repositories for asminject:
Users that are interested in asminject are comparing it to the libraries listed below
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆184Updated last year
- Ghidra scripts for recovering string definitions in Go binaries☆110Updated 5 months ago
- Circumventing "noexec" mount flag to execute arbitrary linux binaries by ptrace-less process injection☆107Updated last week
- A stealthy ELF loader - no files, no execve, no RWX☆160Updated last year
- Slides & Hands-on for the reverse engineering workshop☆178Updated 2 years ago
- ☆77Updated 11 months ago
- Linux Kernel module-less implant (backdoor)☆72Updated 4 years ago
- Academic project of Linux rootkit made for Bachelor Engineering Thesis.☆101Updated 8 months ago
- Get root via TTY / TIOCSTI stuffing☆71Updated 9 months ago
- Userland exec PoC to be used as attack vector technique☆84Updated 2 months ago
- Code snippets for bare-metal malware development☆98Updated 3 years ago
- ☆71Updated 4 months ago
- Jormungandr is a kernel implementation of a COFF loader, allowing kernel developers to load and execute their COFFs in the kernel.☆226Updated last year
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.☆145Updated 2 years ago
- ☆101Updated 2 years ago
- An automatic Blind ROP exploitation tool☆201Updated last year
- ☆46Updated 2 years ago
- ☆88Updated 2 months ago
- ROP ROCKET is an advanced code-reuse attack framework, with extensive ROP chain generation capabilities, including for novel Windows Sysc…☆115Updated 2 weeks ago
- Linux process injection PoCs☆28Updated 11 months ago
- CVE-2022-42046 Proof of Concept of wfshbr64.sys local privilege escalation via DKOM☆162Updated 2 years ago
- Weaponizing to get NT SYSTEM for Privileged Directory Creation Bugs with Windows Error Reporting☆357Updated 2 years ago
- Leveraging CVEs as North Stars in vulnerability discovery and comprehension.☆64Updated last year
- nysm is a stealth post-exploitation container.☆246Updated last year
- stealth userland kit that doesn't use sys_clone/sys_execve call☆30Updated last week
- rp-bf: A library to bruteforce ROP gadgets by emulating a Windows user-mode crash-dump☆114Updated 11 months ago
- Comprehensive toolkit for Ghidra headless.☆354Updated 2 weeks ago
- This repository contains the public work I produced, wheter it is research, post, slides, sometimes videos, and materials of my talks.☆49Updated 2 weeks ago
- Native Syscalls Shellcode Injector☆266Updated last year
- Recon 2023 slides and code☆79Updated last year