GunshipPenguin / kiteshieldLinks
Packer/Protector for x86-64 ELF binaries on Linux
☆158Updated 4 years ago
Alternatives and similar repositories for kiteshield
Users that are interested in kiteshield are comparing it to the libraries listed below
Sorting:
- ELF static analysis and injection framework that parse, manipulate, patch and camouflage ELF files.☆114Updated last month
- A utility to fix intentionally corrupted UPX packed files.☆90Updated 2 years ago
- A simple ptrace-less shared library injector for x64 Linux☆265Updated 2 years ago
- Load a statically-linked ELF binary(x86 architecture) without the execve syscall.☆45Updated 4 years ago
- An ELF / PE binary packer written in pure C, made for fun☆97Updated last year
- Linux Kernel module-less implant (backdoor)☆74Updated 4 years ago
- x86 malware emulator☆226Updated last week
- Academic project of Linux rootkit made for Bachelor Engineering Thesis.☆107Updated last year
- ☆71Updated 9 months ago
- Abusing exceptions for code execution.☆111Updated 2 years ago
- Reverse engineered source code of the autochk rootkit☆205Updated 5 years ago
- A command line Windows API tracing tool for Golang binaries.☆157Updated last year
- Post exploitation technique to turn arbitrary kernel write / increment into full read/write primitive on Windows 11 22H2☆231Updated 3 years ago
- ☆282Updated 3 years ago
- a PE Loader and Windows API tracer. Useful in malware analysis.☆143Updated 2 years ago
- Windows LPE exploit for CVE-2022-37969☆136Updated 2 years ago
- An example of hijacking the dynamic linker with a custom interpreter who loads and executes modular viruses☆67Updated 3 years ago
- Files for the packer tutorial☆73Updated 4 years ago
- A collection of Linux kernel rootkits found across the internet taken and put together☆83Updated 2 years ago
- Anti-analysis tool that obfuscates ELF files☆31Updated 4 years ago
- Linux Loadable Kernel Module (LKM) based rootkit (ring-0), capable of hiding itself, processes/implants, rmmod proof, has ability to bypa…☆256Updated last year
- Assembly block for hooking windows API functions.☆93Updated 6 years ago
- ☆147Updated 2 years ago
- ☆163Updated 3 years ago
- PoC: Rebuild A New Path Back to the Heaven's Gate (HITB 2021)☆109Updated 4 years ago
- PoC capable of detecting manual syscalls from usermode.☆200Updated 9 months ago
- A PoC designed to bypass all usermode hooks in a WoW64 environment.☆150Updated 4 years ago
- bdvl☆114Updated 3 years ago
- Dectect syscall hooking using eBPF☆160Updated 2 years ago
- Python library to convert elf to os-independent shellcodes☆60Updated last year