A simple PoC to demonstrate that is possible to write Non writable memory and execute Non executable memory on Windows
☆52Jun 14, 2021Updated 5 years ago
Alternatives and similar repositories for WindowsPermsPoC
Users that are interested in WindowsPermsPoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆21May 28, 2021Updated 5 years ago
- A proof-of-concept tool that attempts to retrieve the configuration from the memory dump of an F-Secure C3 Relay executable.☆16Jul 2, 2021Updated 5 years ago
- Execute shellcode with ZwCreateSection, ZwMapViewOfSection, ZwOpenProcess, ZwMapViewOfSection and ZwCreateThreadEx☆16Apr 26, 2021Updated 5 years ago
- ☆24Sep 26, 2021Updated 4 years ago
- PoC for hiding PE exports☆67Dec 19, 2020Updated 5 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) via Syswhispers2☆186Jul 21, 2022Updated 4 years ago
- Userland API Unhooker Project☆111Apr 4, 2026Updated 5 months ago
- CallBack-Techniques for Shellcode execution ported to Nim☆61Mar 19, 2021Updated 5 years ago
- A novel technique to communicate between threads using the standard ETHREAD structure☆116Feb 27, 2021Updated 5 years ago
- ☆31Aug 23, 2020Updated 6 years ago
- ☆100Sep 20, 2021Updated 5 years ago
- ☆28Dec 28, 2017Updated 8 years ago
- A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies☆326Apr 8, 2023Updated 3 years ago
- The repository that complements the From zero to hero: creating a reflective loader in C# workshop☆40Oct 6, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- credential dump using foreshaw technique using SeTrustedCredmanAccessPrivilege☆125May 22, 2021Updated 5 years ago
- Code Injection, Inject malicious payload via pagetables pml4.☆244Jul 7, 2021Updated 5 years ago
- .NET 4.0 Scheduled Job Lateral Movement☆88Aug 25, 2020Updated 6 years ago
- AmsiScanBufferBypass using D/Invoke☆136Jun 17, 2021Updated 5 years ago
- JALSI - Just Another Lame Shellcode Injector☆30Aug 1, 2021Updated 5 years ago
- EarlyBird process hollowing technique (BOF) - Spawns a process in a suspended state, inject shellcode, hijack main thread with APC, and e…☆290Mar 8, 2023Updated 3 years ago
- LittleCorporal: A C# Automated Maldoc Generator☆226Jul 30, 2021Updated 5 years ago
- PoC for UUID shellcode execution using DInvoke☆155Mar 8, 2021Updated 5 years ago
- A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.☆297Aug 18, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- SharpHook is an offensive API hooking tool designed to catch various credentials within the API call.☆321Jul 1, 2021Updated 5 years ago
- InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assem…☆196Jul 9, 2021Updated 5 years ago
- StandIn is a small .NET35/45 AD post-exploitation toolkit☆255Dec 2, 2021Updated 4 years ago
- Collection of BOFs for Cobalt Strike☆32Mar 28, 2023Updated 3 years ago
- all credits go to @mgeeky☆65Oct 14, 2021Updated 4 years ago
- Firebase Domain Front Code☆21May 4, 2021Updated 5 years ago
- Proof of concept Beacon Object File (BOF) that uses static x64 syscalls to perform a complete in memory dump of a process and send that b…☆218Jul 14, 2021Updated 5 years ago
- Assembly HellGate implementation that directly calls Windows System Calls and displays the PPID of the explorer.exe process☆107Mar 8, 2023Updated 3 years ago
- OffensivePH - use old Process Hacker driver to bypass several user-mode access controls☆331Oct 9, 2021Updated 4 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Exploit to SYSTEM for CVE-2021-21551☆257May 20, 2021Updated 5 years ago
- This aggressor script uses a beacon's note field to indicate the health status of a beacon.☆143Sep 29, 2021Updated 4 years ago
- AMSI Bypass Via the Heap☆105Nov 20, 2020Updated 5 years ago
- Bring your own print driver privilege escalation tool☆264Aug 5, 2021Updated 5 years ago
- Antivirus Emulator Fingerprints☆30Oct 12, 2018Updated 7 years ago
- A quick example of the Hells Gate technique in Nim☆92Aug 11, 2021Updated 5 years ago
- Move CS beacon to GPU memory when sleeping☆249Nov 19, 2021Updated 4 years ago