Kudaes / RustHollow
Inject a shellcode in a remote process using Process Hollowing.
☆44Updated 3 years ago
Alternatives and similar repositories for RustHollow:
Users that are interested in RustHollow are comparing it to the libraries listed below
- Command & Control server and agent written in Rust☆34Updated 2 years ago
- abusing Process Hacker driver to terminate other processes (BYOVD)☆81Updated last year
- ☆46Updated 2 years ago
- ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption☆80Updated last year
- A 64-bit, position-independent code reverse TCP shell for Windows — built in Rust.☆51Updated 2 weeks ago
- A work in progress BOF/COFF loader in Rust☆46Updated last year
- Sleep Obfuscation☆42Updated 2 years ago
- ☆36Updated last year
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year
- bring your own vulnerable driver☆90Updated last year
- Donut generator in rust.☆25Updated 2 years ago
- I have documented all of the AMSI patches that I learned till now☆68Updated last year
- Rusty Hell's Gate / Halo's Gate / Tartarus' Gate / FreshyCalls / Syswhispers2 Library☆25Updated 2 years ago
- Beacon Object File allowing creation of Beacons in different sessions.☆78Updated 2 years ago
- DLL Hollowing PoC - Remote and Self shellcode injection☆75Updated 3 years ago
- ☆96Updated last year
- ☆35Updated last year
- A proof of concept I developed to improve Gargoyle back in 2018 to achieve true memory obfuscation from position independent code☆40Updated 4 months ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆96Updated last year
- ☆120Updated last year
- A newer iteration of TitanLdr with some newer hooks, and design. A generic user defined reflective DLL I built to prove a point to Mudge …☆172Updated last year
- This script is used to bypass DLL Hooking using a fresh mapped copy of ntdll file, patch the ETW and trigger a shellcode with process hol…☆70Updated 11 months ago
- Repo that holds random POCs☆48Updated last year
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆82Updated last year
- Template-based generation of shellcode loaders☆72Updated 8 months ago