BorjaMerino / Pazuzu
Pazuzu: Reflective DLL to run binaries from memory
☆213Updated 4 years ago
Alternatives and similar repositories for Pazuzu:
Users that are interested in Pazuzu are comparing it to the libraries listed below
- Teaching old shellcode new tricks☆204Updated 7 years ago
- VBS Reversed TCP Meterpreter Stager☆86Updated 7 years ago
- A repository of some of my Windows 10 Device Guard Bypasses☆134Updated 7 years ago
- JavaScript Reversed TCP Meterpreter Stager☆137Updated 7 years ago
- Bypassing User Account Control (UAC) using TpmInit.exe☆127Updated 8 years ago
- An attempt at Process Doppelgänging☆184Updated 7 years ago
- ☆140Updated 7 years ago
- some pocs for antivirus evasion☆130Updated last year
- ☆229Updated 6 years ago
- A "tiny" meterpreter stager☆126Updated 5 years ago
- Tool written in python3 to determine where the AV signature is located in a binary/payload☆313Updated 6 years ago
- Miscellaneous tools written in Python, mostly centered around shellcodes.☆145Updated 9 years ago
- Platform independent peCloak fork based on Capstone☆103Updated 8 years ago
- Randomly changes Win32/64 PE Files for 'safer' uploading to malware and sandbox sites.☆131Updated 11 years ago
- UAC 0day, all day!☆277Updated 7 years ago
- Python solutions for the HackSysTeam Extreme Vulnerable Driver☆151Updated 3 years ago
- NCC Group's analysis and exploitation of CVE-2017-8759 along with further refinements☆96Updated 7 years ago
- Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing☆95Updated 7 years ago
- DropboxC2C is a post-exploitation agent which uses Dropbox Infrastructure for command and control operations.☆148Updated 6 years ago
- Pafish Macro is a Macro enabled Office Document to detect malware analysis systems and sandboxes. It uses evasion & detection techniques …☆281Updated 7 years ago
- PoC dlls for Task Scheduler COM Hijacking☆91Updated 8 years ago
- Cminer is a tool for enumerating the code caves in PE files.☆148Updated last year
- Meterpreter_Payload_Detection.exe tool for detecting Meterpreter in memory like IPS-IDS and Forensics tool☆161Updated last year
- DLL Injection tool to unlock guest VMs☆232Updated 12 years ago
- Uses Invoke-Shellcode to execute a payload and persist on the system.☆111Updated 8 years ago
- How To Execute Shellcode via HTA☆137Updated 6 years ago
- FLARE Kernel Shellcode Loader☆176Updated 5 years ago
- Slides and reference material from Evading Autoruns presentation at DerbyCon 7 (September 2017)☆103Updated 4 years ago
- Port of eternal blue exploits to powershell☆150Updated 7 years ago
- An exploit for CVE-2016-7255 on Windows 7/8/8.1/10(pre-anniversary) 64 bit☆81Updated 7 years ago