MatheuZSecurity / ElfDoor-gccLinks
ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.
☆126Updated 5 months ago
Alternatives and similar repositories for ElfDoor-gcc
Users that are interested in ElfDoor-gcc are comparing it to the libraries listed below
Sorting:
- Attacking the cleanup_module function of a kernel module☆46Updated 3 months ago
- Payload encoding utility to effectively lower payload entropy.☆120Updated 5 months ago
- Collection of codes focused on Linux rootkits☆172Updated 3 weeks ago
- ☆108Updated 11 months ago
- Comprehensive Windows Syscall Extraction & Analysis Framework☆135Updated last month
- POC of GITHUB simple C2 in rust☆53Updated 2 months ago
- ☆146Updated 11 months ago
- Using the Counter Strike 1.6 RCON protocol as a C2 Channel.☆85Updated 7 months ago
- 「⚔️」Ring 0 Rootkit for Linux Kernels x86/x86_64 5.x/6.x☆25Updated 6 months ago
- CVE-2024-30090 - LPE PoC☆108Updated 11 months ago
- "Service-less" driver loading☆161Updated 10 months ago
- Enumerate active EDR's on the system☆130Updated 2 weeks ago
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆124Updated 9 months ago
- Convert your shellcode into an ASCII string☆120Updated 3 months ago
- ModTracer Finds Hidden Linux Kernel Rootkits and then make visible again.☆87Updated 7 months ago
- ☆59Updated 5 months ago
- Windows rootkit designed to work with BYOVD exploits☆208Updated 8 months ago
- ☆40Updated last year
- BSides Prishtina 2024 Malware Development and Persistence workshop☆99Updated 4 months ago
- A collection of PoCs to do common things in unconventional ways☆116Updated last month
- Remote DLL Injection with Timer-based Shellcode Execution☆145Updated 2 months ago
- Windows AppLocker Driver (appid.sys) LPE☆66Updated last year
- We found a way to DLL sideload with cleanmgr.exe☆96Updated 7 months ago
- Create Anti-Copy DRM Malware☆66Updated last year
- Bypasses AMSI protection through remote memory patching and parsing technique.☆50Updated 5 months ago
- Work, timer, and wait callback example using solely Native Windows APIs.☆87Updated last year
- Dynamic shellcode loader with sophisticated evasion capabilities☆115Updated last week
- Make an Linux Kernel rootkit visible again.☆57Updated 7 months ago
- Backdooring VSCode Projects☆79Updated 4 months ago
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆73Updated last year