Idov31 / NidhoggLinks
Nidhogg is an all-in-one simple to use windows kernel rootkit.
☆2,199Updated this week
Alternatives and similar repositories for Nidhogg
Users that are interested in Nidhogg are comparing it to the libraries listed below
Sorting:
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆877Updated last month
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,578Updated last year
- Collection of various malicious functionality to aid in malware development☆1,837Updated last year
- ☆1,777Updated last year
- AV/EDR evasion via direct system calls.☆1,784Updated 3 years ago
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆1,240Updated 2 years ago
- A modern 32/64-bit position independent implant template☆1,289Updated 10 months ago
- Original C Implementation of the Hell's Gate VX Technique☆1,153Updated 4 years ago
- Win32 and Kernel abusing techniques for pentesters☆972Updated 2 years ago
- EDR Lab for Experimentation Purposes☆1,409Updated 2 weeks ago
- A tool to kill antimalware protected processes☆1,507Updated 4 years ago
- Now You See Me, Now You Don't☆1,024Updated last week
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,198Updated 2 years ago
- AV/EDR evasion via direct system calls.☆1,979Updated 3 years ago
- Open-Source Shellcode & PE Packer☆2,058Updated 2 years ago
- Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.☆932Updated 3 years ago
- Living Off The Land Drivers☆1,378Updated this week
- Process Hollowing (Malware Technique)☆1,383Updated 4 months ago
- Template-Driven AV/EDR Evasion Framework☆1,770Updated 2 years ago
- Awesome EDR Bypass Resources For Ethical Hacking☆1,465Updated last week
- Alternative Shellcode Execution Via Callbacks☆1,686Updated 3 years ago
- Fileless ring 3 rootkit with installer and persistence that hides processes, files, network connections, etc.☆2,083Updated last month
- ☆2,171Updated 2 years ago
- Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes☆1,039Updated 2 years ago
- kill anti-malware protected processes ( BYOVD )☆971Updated 2 years ago
- LoadLibrary for offensive operations☆1,173Updated 4 years ago
- Converts PE into a shellcode☆2,729Updated 5 months ago
- This program is designed to demonstrate various process injection techniques☆1,220Updated 5 months ago
- Loading Remote AES Encrypted PE in memory , Decrypted it and run it☆1,019Updated 2 years ago
- The swiss army knife of LSASS dumping☆2,065Updated last year