Idov31 / NidhoggCSharpApiLinks
C# API for Nidhogg rootkit
☆17Updated last year
Alternatives and similar repositories for NidhoggCSharpApi
Users that are interested in NidhoggCSharpApi are comparing it to the libraries listed below
Sorting:
- ☆27Updated 4 months ago
- ☆20Updated 11 months ago
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆24Updated 8 months ago
- EmbedExeLnk by x86matthew modified by d4rkiZ☆41Updated 2 years ago
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆28Updated 4 months ago
- Your NTDLL vaccine from modern direct syscall methods.☆35Updated 3 years ago
- Execute dotnet app from unmanaged process☆75Updated 5 months ago
- Modified Version of Melkor @FuzzySecurity capable of creating disposable AppDomains in injected processes.☆28Updated 3 years ago
- Bypassing Amsi using LdrLoadDll☆44Updated 4 months ago
- A Dynamic MSBuild task to help with minor obfuscation of C# Binaries to evade static signatures on each compilation☆36Updated last month
- ☆36Updated 2 years ago
- ☆55Updated 7 months ago
- A powerful Windows UI monitoring and DNS exfiltration tool written in Rust, combining advanced UI event capture capabilities with secure …☆16Updated 3 months ago
- ☆30Updated 2 months ago
- Artemis - C++ Hell's Gate Syscall Implementation☆33Updated last year
- Hooked create process injection for meterpreter☆23Updated 3 years ago
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆23Updated last year
- ☆18Updated 7 months ago
- Windows C++ Implant for Exploration C2☆31Updated last week
- Section-based payload obfuscation technique for x64☆59Updated 9 months ago
- C code to enable ETW tracing for Dotnet Assemblies☆31Updated 2 years ago
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆49Updated 4 months ago
- A method to execute shellcode using RegisterWaitForInputIdle API.☆54Updated 2 years ago
- https://github.com/janoglezcampos/c_syscalls with the ASM rewritten by myself for Visual Studio's Compiler.☆31Updated 11 months ago
- ☆26Updated last year
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆42Updated 10 months ago
- BypassCredGuard CS BOF☆41Updated 4 months ago
- Less sugar (entropy) for your binaries☆22Updated 2 months ago
- Proxy function calls through the thread pool with ease☆28Updated 3 months ago
- Shellcode Loader Utilizing ETW Events☆63Updated 3 months ago