D3Ext / malware-practicesLinks
Repo for malware development practices I post on my blog
☆35Updated last year
Alternatives and similar repositories for malware-practices
Users that are interested in malware-practices are comparing it to the libraries listed below
Sorting:
- random code snippets, useful for getting started☆121Updated 10 months ago
- Bypass Malware Sandbox Evasion Ram check☆138Updated 2 years ago
- ☆40Updated last year
- BSides Prishtina 2024 Malware Development and Persistence workshop☆98Updated 4 months ago
- Create Anti-Copy DRM Malware☆66Updated last year
- The program uses the Windows API functions to traverse through directories and locate DLL files with RWX section☆106Updated 2 years ago
- ☆108Updated 2 years ago
- Basic interactive Windows kernel offensive toolkit written in C☆131Updated 2 weeks ago
- Resources and articles I need to take a look at. Mostly about malware/exploit development and analysis.☆84Updated 3 years ago
- Bypass the Event Trace Windows(ETW) and unhook ntdll.☆113Updated 2 years ago
- Hunt for C2 servers and phishing web sites using VirusTotal API , you can modify code to kill the malicious process☆71Updated last year
- Understanding WinRAR Code Execution Vulnerability (CVE-2023-38831)☆40Updated 2 years ago
- This project is an implant framework designed for long term persistent access to Windows machines.☆109Updated 2 years ago
- CompMgmtLauncher & Sharepoint DLL Search Order hijacking UAC/persist via OneDrive☆108Updated 2 years ago
- A variation of ProcessOverwriting to execute shellcode on an executable's section☆146Updated last year
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆115Updated last year
- A command and control framework.☆55Updated 9 months ago
- Hide memory artifacts using ROP and hardware breakpoints.☆147Updated last year
- Do some DLL SideLoading magic☆87Updated 2 years ago
- APT-Attack-Simulation simulates APT 29 and Lockbit TTPs, showcasing phishing, ISO execution, and DLL proxying for persistence and privile…☆61Updated last year
- ☆163Updated last year
- 「💀」Proof of concept on BYOVD attack☆163Updated 10 months ago
- ☆120Updated last year
- ☆84Updated 3 years ago
- Red Team Operation's Defense Evasion Technique.☆55Updated last year
- Finding secrets in kernel and user memory☆115Updated 2 years ago
- A simple ExternalC2 POC for Havoc C2. Communicates over Notion using a custom python agent, handler and extc2 channel. Not operationally …☆88Updated 3 years ago
- PhantomsGate: Advanced Shellcode Injection Technique☆25Updated last year
- Dropping a powershell script at %HOMEPATH%\Documents\WindowsPowershell\ , that contains the implant's path , and whenever powershell pro…☆84Updated 2 years ago
- PE obfuscator with Evasion in mind☆213Updated 2 years ago