MatheuZSecurity / ElfDoor-gccLinks
ElfDoor-gcc is an LD_PRELOAD that hijacks gcc to inject malicious code into binaries during linking, without touching the source code.
☆116Updated 3 months ago
Alternatives and similar repositories for ElfDoor-gcc
Users that are interested in ElfDoor-gcc are comparing it to the libraries listed below
Sorting:
- ☆107Updated 8 months ago
- Using the Counter Strike 1.6 RCON protocol as a C2 Channel.☆81Updated 4 months ago
- ☆143Updated 8 months ago
- Windows rootkit designed to work with BYOVD exploits☆200Updated 6 months ago
- Payload encoding utility to effectively lower payload entropy.☆119Updated 3 months ago
- ☆57Updated 2 months ago
- Attacking the cleanup_module function of a kernel module☆37Updated 2 weeks ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆90Updated last year
- "Service-less" driver loading☆155Updated 7 months ago
- ☆40Updated last year
- Library that eases the use of indirect syscalls. Quite interesting AV/EDR bypass as PoC.☆129Updated 3 weeks ago
- Win32 keylogger that supports all (non-ime using) languages correctly☆50Updated last year
- POC of GITHUB simple C2 in rust☆53Updated 5 months ago
- Blocks EDR Telemetry by performing Person-in-the-Middle attack where network filtering is applied using iptables. The blocked destination…☆139Updated 11 months ago
- Sleep obfuscation☆229Updated 7 months ago
- Malleable shellcode loader written in C and Assembly utilizing direct or indirect syscalls for evading EDR hooks☆111Updated 6 months ago
- Create Anti-Copy DRM Malware☆59Updated 10 months ago
- In-Memory Rootkit For Linux☆71Updated last month
- Construct the payload at runtime using an array of offsets☆63Updated last year
- Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.☆73Updated last week
- Windows Persistence IT-Security☆102Updated 4 months ago
- BSides Prishtina 2024 Malware Development and Persistence workshop☆88Updated last month
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆130Updated 11 months ago
- Local & remote Windows DLL Proxying☆165Updated last year
- A stealthy, assembly-based tool for secure function address resolution, offering a robust alternative to GetProcAddress.☆73Updated last year
- Convert your shellcode into an ASCII string☆94Updated 3 weeks ago
- Shellcode loader that executes embedded Lua from Rust.☆116Updated 7 months ago
- LKM rootkit for modern kernels, with DNS C2 and a simple web interface☆72Updated last week
- Monarch - The Adversary Emulation Toolkit☆61Updated 6 months ago
- A Mythic Agent written in PIC C.☆192Updated 5 months ago