Extracting Syscall Stub, Modernized
☆65Apr 2, 2022Updated 4 years ago
Alternatives and similar repositories for TripleS
Users that are interested in TripleS are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- My implementation of Halo's Gate technique in C#☆53Apr 20, 2022Updated 4 years ago
- One gate to all syscalls!☆23Mar 12, 2022Updated 4 years ago
- Halos Gate-based NTAPI Unhooker☆51Apr 21, 2022Updated 4 years ago
- C# Based Universal API Unhooker☆407Feb 18, 2022Updated 4 years ago
- Upsilon execute shellcode with syscalls - no API like NtProtectVirtualMemory is used☆89Aug 26, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- JALSI - Just Another Lame Shellcode Injector☆30Aug 1, 2021Updated 5 years ago
- An attempt to make a LoadLibrary designed for offensive operations, in C# obviously.☆54Mar 3, 2022Updated 4 years ago
- SLib is a sandbox evasion library that implements some of the checks from https://evasions.checkpoint.com in C#☆66Aug 29, 2023Updated 3 years ago
- ☆31Aug 23, 2020Updated 6 years ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆20Apr 17, 2023Updated 3 years ago
- Your NTDLL vaccine from modern direct syscall methods.☆36Apr 5, 2022Updated 4 years ago
- A repository filled with ideas to break/detect direct syscall techniques☆25Apr 21, 2022Updated 4 years ago
- ☆188Jan 5, 2021Updated 5 years ago
- Obfuscate ECMA CIL (.NET IL) assemblies to evade Windows Defender AMSI☆237Jun 9, 2023Updated 3 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- C# Reflective loader for unmanaged binaries.☆445Jan 25, 2023Updated 3 years ago
- PoC: Exploit 32-bit Thread Snapshot of WOW64 to Take Over $RIP & Inject & Bypass Antivirus HIPS (HITB 2021)☆163May 27, 2021Updated 5 years ago
- ☆130Jun 28, 2023Updated 3 years ago
- Process Ghosting in C#☆217Jan 24, 2022Updated 4 years ago
- Python3 tool to perform password spraying using RDP☆17Aug 14, 2023Updated 3 years ago
- Load a fresh new copy of ntdll.dll via file mapping to bypass API inline hook.☆61Sep 6, 2021Updated 5 years ago
- Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes☆107Mar 8, 2023Updated 3 years ago
- Two C# RunPE's capable of x86 and x64 injections☆11Dec 2, 2018Updated 7 years ago
- ☆154Jan 6, 2023Updated 3 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- ☆100Sep 20, 2021Updated 5 years ago
- YouTube/Livestream project for obfuscating C# source code using Roslyn☆128May 9, 2021Updated 5 years ago
- Hardened Proof of Concept of D/Invoke Process Injection malware☆41Jul 23, 2020Updated 6 years ago
- Pass the Hash to a named pipe for token Impersonation☆308Nov 29, 2023Updated 2 years ago
- Load shellcode via HELLGATE, Rewrite hellgate with .net framework for learning purpose.☆17Jan 21, 2022Updated 4 years ago
- ☆19Aug 19, 2021Updated 5 years ago
- A faithful transposition of the key features/functionality of @itm4n's PPLDump project as a BOF.☆141Sep 24, 2021Updated 5 years ago
- Find kernel32 base and API addresses. Simple C++ implementation☆24Apr 7, 2022Updated 4 years ago
- OffensivePH - use old Process Hacker driver to bypass several user-mode access controls☆331Oct 9, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- I used this to see if an EDR is running in Safe Mode☆33Feb 13, 2021Updated 5 years ago
- ShellCodeLoader via DInvoke☆59Jul 5, 2021Updated 5 years ago
- MappingInjection via csharp☆39Nov 19, 2021Updated 4 years ago
- C# tool for installing a shared network printer abusing the PrinterNightmare bug to allow other network machines easy privesc!☆181Aug 4, 2021Updated 5 years ago
- Some source code to demonstrate avoiding certain direct syscall detections by locating and JMPing to a legitimate syscall instruction wit…☆218Feb 20, 2023Updated 3 years ago
- Dynamically invoke arbitrary unmanaged code from managed code without PInvoke.☆792Dec 21, 2022Updated 3 years ago
- ☆53Sep 16, 2021Updated 5 years ago