Kudaes / CustomEntryPoint
Select any exported function in a dll as the new dll's entry point.
☆78Updated 6 months ago
Alternatives and similar repositories for CustomEntryPoint:
Users that are interested in CustomEntryPoint are comparing it to the libraries listed below
- ☆99Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆63Updated last week
- A work in progress BOF/COFF loader in Rust☆47Updated 2 years ago
- remote process injections using pool party techniques☆59Updated 2 months ago
- I have documented all of the AMSI patches that I learned till now☆72Updated last month
- ☆58Updated 3 months ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆76Updated 2 months ago
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆63Updated 2 years ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆100Updated 2 years ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year
- Threadless shellcode injection tool☆64Updated 9 months ago
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆49Updated 3 months ago
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆130Updated 8 months ago
- Adaptive DLL hijacking / dynamic export forwarding - EAT preserve☆78Updated 9 months ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆84Updated 2 years ago
- Section-based payload obfuscation technique for x64☆59Updated 9 months ago
- DLL proxy load example using the Windows thread pool API, I/O completion callback with named pipes, and C++/assembly☆60Updated last year
- Splitting and executing shellcode across multiple pages☆101Updated last year
- ☆81Updated 11 months ago
- lsassdump via RtlCreateProcessReflection and NanoDump☆82Updated 6 months ago
- ForsHops☆44Updated last month
- A BOF to enumerate system process, their protection levels, and more.☆116Updated 5 months ago
- Find DLLs with RWX section☆80Updated last year
- Rusty Hell's Gate / Halo's Gate / Tartarus' Gate / FreshyCalls / Syswhispers2 Library☆30Updated 2 years ago
- ☆86Updated 8 months ago
- shell code example☆48Updated 3 weeks ago
- BYOVD collection☆23Updated last year
- Identify and exploit leaked handles for local privilege escalation.☆107Updated last year
- early cascade injection PoC based on Outflanks blog post, in rust☆58Updated 6 months ago
- A Rust port of LayeredSyscall — performs indirect syscalls while generating legitimate API call stack frames by abusing VEH.☆143Updated 6 months ago