C5Hackr / PEB-RedirectionLinks
☆12Updated last year
Alternatives and similar repositories for PEB-Redirection
Users that are interested in PEB-Redirection are comparing it to the libraries listed below
Sorting:
- A unique introduction to native runtime obfuscation.☆74Updated 11 months ago
- Troll TaskManager, and play with it .☆30Updated 6 months ago
- Shadow Rebirth - An Aggressive Outbreak Anti-Debugging Technique☆19Updated last year
- kernel-mode DLL Injector☆125Updated 9 months ago
- simple user-mode Rootkit☆108Updated 3 years ago
- Utilizing DLang For Offensive Operations.☆14Updated 8 months ago
- ☆42Updated last year
- My POC implementation of HVNC (Hidden VNC / Hidden Desktop)☆28Updated last year
- Obfuscating function calls using Vectored Exception Handlers by redirecting execution through exception-based control flow. Uses byte swa…☆112Updated 3 months ago
- Pattern-based AMSI bypass that patches AMSI.dll in memory by modifying comparison values, conditional jumps, and function prologues to ne…☆27Updated 8 months ago
- ☆28Updated last year
- PoC arbitrary WPM without a process handle☆21Updated 2 years ago
- Dirty PoC on how to abuse S1's VEH for Vectored Syscalls and Local Execution☆42Updated 3 months ago
- ☆60Updated last year
- NTAPI hook bypass with (semi) legit stack trace☆18Updated 2 years ago
- A Free Open sourced crypter that builds a output .NET .exe Stub (Updated whenever I feel like it)☆20Updated 3 months ago
- The first open source runtime windows batch and command line deobfuscator☆42Updated 5 months ago
- Unhook Ntdll.dll, Go & C++.☆32Updated 9 months ago
- Research into removing strings & API call references at compile-time (Anti-Analysis)☆28Updated last year
- ☆113Updated last month
- ☆52Updated last year
- Evade behavioral analysis by executing malicious code within trusted Microsoft call stacks, patchless hooking library IAT/EAT.☆129Updated last month
- Windows x64 kernel mode rootkit process hollowing POC.☆189Updated 2 years ago
- PhantomDelay is a precise delay function that uses the Windows high resolution performance counter to pause your program for a specified …☆18Updated 8 months ago
- a stage1 DLL loader with sleep obfuscation☆36Updated 3 years ago
- ATL.dll and WmiMgmt.msc UAC Bypass☆12Updated 9 months ago
- Nim process hollowing loader☆62Updated 6 months ago
- Ransomware written in go, encrypt - decrypt.☆29Updated 9 months ago
- Uses Threat-Intelligence ETW events to identify shellcode regions being hidden by fluctuating memory protections☆165Updated 2 years ago
- 🗡️ A multi-user malleable C2 framework targeting Windows. Written in C++ and Python☆45Updated last year