Idov31 / Nidhogg
Nidhogg is an all-in-one simple to use windows kernel rootkit.
☆1,796Updated last month
Related projects ⓘ
Alternatives and complementary repositories for Nidhogg
- ☆1,531Updated 2 months ago
- A tool to kill antimalware protected processes☆1,383Updated 3 years ago
- A modern 64-bit position independent implant template☆1,053Updated 6 months ago
- Collection of various malicious functionality to aid in malware development☆1,500Updated 8 months ago
- Living Off The Land Drivers☆1,040Updated last month
- ☆2,015Updated last year
- A memory-based evasion technique which makes shellcode invisible from process start to end.☆1,151Updated last year
- Project for tracking publicly disclosed DLL Hijacking opportunities.☆664Updated last week
- Open-Source Shellcode & PE Packer☆1,859Updated 9 months ago
- AV/EDR evasion via direct system calls.☆1,811Updated last year
- Alternative Shellcode Execution Via Callbacks☆1,454Updated 2 years ago
- SysWhispers on Steroids - AV/EDR evasion via direct system calls.☆1,298Updated 3 months ago
- Awesome EDR Bypass Resources For Ethical Hacking☆946Updated last week
- AV/EDR evasion via direct system calls.☆1,548Updated 2 years ago
- Original C Implementation of the Hell's Gate VX Technique☆954Updated 3 years ago
- This program is designed to demonstrate various process injection techniques☆1,080Updated last year
- Template-Driven AV/EDR Evasion Framework☆1,591Updated last year
- Little user-mode AV/EDR evasion lab for training & learning purposes☆1,010Updated 6 months ago
- Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes☆928Updated last year
- A set of fully-undetectable process injection techniques abusing Windows Thread Pools☆957Updated 11 months ago
- Great explanation of Process Hollowing (a Technique often used in Malware)☆1,256Updated last year
- Cronos is Windows 10/11 x64 ring 0 rootkit. Cronos is able to hide processes, protect and elevate them with token manipulation.☆857Updated 2 years ago
- The swiss army knife of LSASS dumping☆1,795Updated 2 months ago
- Now You See Me, Now You Don't☆860Updated last month
- Spartacus DLL/COM Hijacking Toolkit☆995Updated 9 months ago
- Win32 and Kernel abusing techniques for pentesters☆924Updated last year
- ☆729Updated last year
- LSASS memory dumper using direct system calls and API unhooking.☆1,491Updated 3 years ago
- LoadLibrary for offensive operations☆1,091Updated 3 years ago
- A DLL loader with advanced evasive features☆657Updated last year