CyberSecurityUP / SyscallHookDetectorLinks
☆18Updated last year
Alternatives and similar repositories for SyscallHookDetector
Users that are interested in SyscallHookDetector are comparing it to the libraries listed below
Sorting:
- Live memory analysis detecting malware IOCs in processes, modules, handles, tokens, threads, .NET assemblies, memory address space and en…☆43Updated last year
- Windows internals and exploitation tricks☆110Updated last month
- Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers☆125Updated last year
- quASAR: ASAR manipulation made easy☆38Updated 3 years ago
- MITRE TTPs derived from Conti's leaked playbooks from XSS.IS☆40Updated 4 years ago
- A C implementation of the Sektor7 "A Thief" Windows privesc technique.☆69Updated 3 years ago
- ☆61Updated 2 years ago
- Scan your computer for known vulnerable and known malicious Windows drivers using loldrivers.io☆87Updated last month
- ☆38Updated 2 years ago
- ☆76Updated 3 years ago
- a tiny program to consume from ETW providers for research☆53Updated last year
- API Hammering with C++20☆49Updated 3 years ago
- ☆45Updated 2 years ago
- ☆59Updated last year
- Remap ntdll.dll using only NTAPI functions with a suspended process☆26Updated 8 months ago
- An example of COM hijacking using a proxy DLL.☆42Updated 4 years ago
- Collection of Rust repos useful for Red Teamers.☆34Updated 3 years ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Updated last year
- Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver☆53Updated 2 years ago
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆20Updated last year
- .NET tool used to enrich RPC telemetry☆101Updated 6 months ago
- ☆108Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆22Updated 2 years ago
- A tool for interacting with the Anti-Malware Scan Interface API for pen testing purposes.☆67Updated 2 years ago
- LibWinHttp is a simplified WinHTTP wrapper designed as a Crystal Palace shared library for implant development. Its primary purpose is to…☆40Updated 2 months ago
- A simple Linux in-memory .so loader☆33Updated 2 years ago
- Dumping LSASS by Unhooking MiniDumpWriteDump by getting a fresh DbgHelp.dll copy from the disk , plus functions and strings obfuscation☆31Updated 3 years ago
- Golang bindings for PE-sieve☆42Updated 2 years ago
- The repository accompanying the Buer Emulation workshop☆23Updated 4 years ago
- Repo containing my public talks☆23Updated 2 years ago