EddieIvan01 / win32api-practiceLinks
Offensive tools written for practice purposes
☆162Updated 3 years ago
Alternatives and similar repositories for win32api-practice
Users that are interested in win32api-practice are comparing it to the libraries listed below
Sorting:
- Beacon.dll reverse☆141Updated 4 years ago
- Beacon compiled using clang☆72Updated 3 years ago
- Another shellcode runner 🦀 🐚☆148Updated 4 years ago
- Misc TaskScheduler Plays☆238Updated 3 years ago
- ☆92Updated 4 years ago
- A demo of the relevant blog post: https://www.arashparsa.com/hook-heaps-and-live-free/☆194Updated 4 years ago
- ReflectiveDLL☆156Updated 5 years ago
- ReturnGate, just like HellsGate.☆68Updated 3 years ago
- An implementation of an indirect system call☆132Updated 2 years ago
- ☆51Updated 4 years ago
- ☆89Updated 3 years ago
- CLIPBRDWNDCLASS process injection technique(BOF) - execute beacon shellcode in callback☆68Updated 3 years ago
- power-kill is a project that kill protected processes (such as EDR or AV) by injecting shellcode into high privilege processes☆48Updated 4 years ago
- Simple windows rpc server for research purposes only☆83Updated 3 years ago
- use aswArPot.sys to kill process☆69Updated 3 years ago
- UAC_wenpon☆49Updated 4 years ago
- Exploits undocumented elevated COM interface ICMLuaUtil via process spoofing to edit registry then calls ColorDataProxy to trigger UAC b…☆142Updated 3 years ago
- HVNC based on RustDesk☆108Updated last year
- Use COM Component Bypass UAC,Dll Version☆36Updated 4 years ago
- Shellcode implementation of Reflective DLL Injection by Golang. Convert DLLs to position independent shellcode☆63Updated 4 years ago
- Amaterasu terminates, or inhibits, protected processes such as application control and AV/EDR solutions by leveraging the Sysinternals Pr…☆78Updated last year
- ☆32Updated 5 years ago
- (Hellsgate|Halosgate|Tartarosgate)+Spoofing-Gate. Ensures that all systemcalls go through ntdll.dll☆45Updated 3 years ago
- Golang implementation of Reflective load PE from memory☆64Updated 4 years ago
- Windows Defender VDM lua collections☆48Updated 3 years ago
- PrintNightmare , Local Privilege Escalation of CVE-2021-1675 or CVE-2021-34527☆58Updated 4 years ago
- LOLBINs that inject a DLL into a given process ID.☆139Updated 4 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆69Updated 3 months ago
- 基于Tinynuke修复得到的HVNC☆189Updated 4 years ago
- ☆81Updated 4 years ago