Bypass Windows defender syscall
☆17Jul 17, 2021Updated 5 years ago
Alternatives and similar repositories for KanonSys
Users that are interested in KanonSys are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Runpe + DInvoke + Syscall☆18Jun 18, 2021Updated 5 years ago
- Trabajo Fin de Grado sobre CubeX, un cronómetro de cubos de rubik☆23Dec 10, 2025Updated 7 months ago
- Nice try reading NTDLL from disk, nerd.☆19Apr 18, 2022Updated 4 years ago
- Process injection via KernelCallbackTable☆13Jan 28, 2022Updated 4 years ago
- Anti-Debug methods with C#☆13Dec 20, 2020Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Windows NTLMSSP library☆11Oct 13, 2020Updated 5 years ago
- A .NET binary loader that bypasses AMSI☆45Sep 20, 2021Updated 4 years ago
- Append custom data to signed pe file and DONOT DESTROY SIGNED STATUS.☆26Mar 13, 2021Updated 5 years ago
- Direct syscalls Injection to bypass AV/EDR☆10May 18, 2024Updated 2 years ago
- A wrapper around Windows, calls explicitly the lowest possible calls☆14Jan 19, 2023Updated 3 years ago
- A small shellcode loader library written in C#☆47Dec 21, 2021Updated 4 years ago
- A repository filled with ideas to break/detect direct syscall techniques☆26Apr 21, 2022Updated 4 years ago
- Malware persistence via COM DLL hijacking. C++ implementation example☆15May 2, 2022Updated 4 years ago
- Bypassing kernel patch protection runtime☆22Feb 19, 2023Updated 3 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Get your data from the resource section manually, with no need for windows apis☆67Oct 22, 2024Updated last year
- MappingInjection via csharp☆39Nov 19, 2021Updated 4 years ago
- JALSI - Just Another Lame Shellcode Injector☆30Aug 1, 2021Updated 4 years ago
- Inject dll to explorer.exe and hide file from process.☆22Apr 24, 2021Updated 5 years ago
- muddyc3_golang☆21Feb 13, 2020Updated 6 years ago
- Public scripts etc.☆19Jan 14, 2024Updated 2 years ago
- ☆21Jan 28, 2020Updated 6 years ago
- Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods☆13Sep 30, 2022Updated 3 years ago
- It stinks☆101Apr 22, 2022Updated 4 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- C# version of MDSec's ParallelSyscalls☆144Jan 9, 2022Updated 4 years ago
- Playing with PE's and Building Structures by Hand☆22Apr 21, 2022Updated 4 years ago
- Hooking Heavens Gate in a weekend☆13Jan 1, 2022Updated 4 years ago
- 关闭恶意驱动的文件和注册表保护☆14Jun 28, 2022Updated 4 years ago
- Manual Map DLL injection implemented with Cobalt Strike's Beacon Object Files.☆152Sep 3, 2020Updated 5 years ago
- Bypass UAC by abusing shell protocol handlers☆15Jul 12, 2021Updated 5 years ago
- A C implementation of the Sektor7 "A Thief" Windows privesc technique.☆68Mar 25, 2022Updated 4 years ago
- Patch AMSI and ETW in remote process via direct syscall☆84Apr 28, 2022Updated 4 years ago
- A shellcode tool to make convenient shellcode programing work flow.☆12Oct 19, 2021Updated 4 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Example for PagedOut!☆25Oct 22, 2019Updated 6 years ago
- Mimikatz embedded as classes☆27Oct 25, 2021Updated 4 years ago
- PoC: Exploit 32-bit Thread Snapshot of WOW64 to Take Over $RIP & Inject & Bypass Antivirus HIPS (HITB 2021)☆163May 27, 2021Updated 5 years ago
- Bypass UAC by abusing the Internet Explorer Add-on installer☆57Jul 12, 2021Updated 5 years ago
- Escalate from a low-integrity Administrator account to NT AUTHORITY\SYSTEM without an LPE exploit by combining a COM UAC bypass and Token…☆161Dec 19, 2021Updated 4 years ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆20Apr 17, 2023Updated 3 years ago
- Dangling COM Keys Finder☆17Nov 16, 2021Updated 4 years ago