MatheuZSecurity / UnhookingLinuxEdr
Attacking the cleanup_module function of a kernel module
☆28Updated last week
Alternatives and similar repositories for UnhookingLinuxEdr:
Users that are interested in UnhookingLinuxEdr are comparing it to the libraries listed below
- Windows AppLocker Driver (appid.sys) LPE☆53Updated 8 months ago
- Linux Sleep Obfuscation☆95Updated last year
- A remote process injection using process snapshotting based on https://gitlab.com/ORCA000/snaploader , in rust. It creates a sacrificial …☆46Updated 2 months ago
- API Hammering with C++20☆45Updated 2 years ago
- BYOVD Technique Example using viragt64 driver☆37Updated 8 months ago
- Exploiting the KsecDD Windows driver through Server Silos☆63Updated 5 months ago
- Execute dotnet app from unmanaged process☆72Updated 3 months ago
- ☆36Updated 2 years ago
- command control framework☆21Updated last week
- Plantronics Desktop Hub LPE☆37Updated 10 months ago
- lsassdump via RtlCreateProcessReflection and NanoDump☆79Updated 5 months ago
- ☆30Updated 3 weeks ago
- An Obfuscator-LLVM based mingw-w64 toolchain.☆36Updated 3 years ago
- Basic implementation of Cobalt Strikes - User Defined Reflective Loader feature☆101Updated 2 years ago
- ☆47Updated 2 years ago
- A firebeam plugin that exploits the CVE-2024-26229 vulnerability to perform elevation of privilege from a unprivileged user☆39Updated 7 months ago
- ☆35Updated 4 months ago
- yet another sleep encryption thing. also used the default github repo name for this one.☆69Updated last year
- NailaoLoader: Hiding Execution Flow via Patching☆20Updated last month
- Simple PoC to locate hooked functions by EDR in ntdll.dll☆36Updated last year
- A work in progress BOF/COFF loader in Rust☆47Updated 2 years ago
- A (quite) simple steganography algorithm to hide shellcodes within bitmap image.☆22Updated 11 months ago
- Splitting and executing shellcode across multiple pages☆100Updated last year
- A PoC of Stack encryption prior to custom sleeping by leveraging CPU cycles.☆63Updated last year
- Section-based payload obfuscation technique for x64☆59Updated 8 months ago
- ☆54Updated 5 months ago
- ☆39Updated 9 months ago
- Create Anti-Copy DRM Malware☆55Updated 7 months ago
- CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)☆44Updated 5 months ago
- Boilerplate to develop raw and truly Position Independent Code (PIC).☆45Updated 2 months ago