Cyb3rWard0g / WinRpcFunctionsLinks
☆68Updated 3 years ago
Alternatives and similar repositories for WinRpcFunctions
Users that are interested in WinRpcFunctions are comparing it to the libraries listed below
Sorting:
- FLARE Kernel Shellcode Loader☆179Updated 6 years ago
- ☆120Updated 5 years ago
- Process reimaging proof of concept code☆96Updated 6 years ago
- Proxy system calls over an RPC channel☆99Updated 3 years ago
- Documentation and supporting script sample for Windows Exploit Guard☆157Updated this week
- An command-line RPC method enumerator, born out of RPCView's awesomeness☆108Updated 6 years ago
- Windows Drivers☆99Updated 6 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆35Updated 4 years ago
- Winbindex bot to pull in binaries for specific releases☆48Updated 2 years ago
- ☆83Updated 3 years ago
- Example code for EDR bypassing☆150Updated 6 years ago
- Sysmon shenanigans☆66Updated 4 years ago
- This respository is a collection of C# class libraries which implement RPC clients for various versions of the Windows Operating System f…☆279Updated 5 years ago
- https://blog.f-secure.com/hiding-malicious-code-with-module-stomping/☆121Updated 5 years ago
- A tool to exploit .NET DCOM for EoP and RCE. Is fixed in latest versions of the .NET.☆92Updated 10 years ago
- A C++ POC for process injection using NtCreateSectrion, NtMapViewOfSection and RtlCreateUserThread. Credit to @spotheplanet for his notes…☆43Updated 4 years ago
- Adds a user-mode asynchronous procedure call (APC) object to the APC queue of the specified thread and spoof the Parent Process.☆158Updated 6 years ago
- A tool to create COM class/interface relationships in neo4j☆50Updated 2 years ago
- DotNext 2019 St. Petersburg Talk Demos☆40Updated 6 years ago
- ☆70Updated 7 months ago
- IBM RedCON 2020 - Throwing an AquaWrench into the Kernel☆44Updated 5 years ago
- Driver Initial Reconnaissance Tool☆123Updated 5 years ago
- Simple 32/64-bit PEs loader.☆139Updated 6 years ago
- ReaCOM has got a lot of tools to use and is related to component object model☆74Updated 5 years ago
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆99Updated 5 years ago
- A novel technique to communicate between threads using the standard ETHREAD structure☆114Updated 4 years ago
- Shim database persistence (Fin7 TTP)☆37Updated 5 years ago
- A collection of shellcode hashes☆17Updated 7 years ago
- Parsers for custom malware formats ("Funky malware formats")☆96Updated 3 years ago
- Leverage AMSI (Antimalware Scan Interface) technology to aid your analysis. This tool saves all buffers (scripts, .NET assemblies, etc) …☆111Updated 4 years ago