NtDallas / Ulfberht
Shellcode loader
☆57Updated 3 weeks ago
Alternatives and similar repositories for Ulfberht:
Users that are interested in Ulfberht are comparing it to the libraries listed below
- TypeLib persistence technique☆79Updated last month
- Simple POC library to execute arbitrary calls proxying them via NdrServerCall2 or similar☆119Updated 4 months ago
- Windows NTLM hash dump utility written in C language, that supports Windows and Linux. Hashes can be dumped in realtime or from already s…☆50Updated 11 months ago
- Huffman Coding in Shellcode Obfuscation & Dynamic Indirect Syscalls Loader☆84Updated 9 months ago
- Indirect Syscall implementation to bypass userland NTAPIs hooking.☆56Updated 4 months ago
- stack spoofing☆68Updated 3 weeks ago
- A newer iteration of TitanLdr with some newer hooks, and design. A generic user defined reflective DLL I built to prove a point to Mudge …☆166Updated last year
- Threadless shellcode injection tool☆62Updated 4 months ago
- ☆119Updated 3 months ago
- ☆118Updated last year
- ☆60Updated 6 months ago
- ☆108Updated last year
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆80Updated last year
- ☆90Updated 3 months ago
- Template-based generation of shellcode loaders☆68Updated 7 months ago
- Improved version of EKKO by @5pider that Encrypts only Image Sections☆114Updated last year
- A BOF to enumerate system process, their protection levels, and more.☆105Updated 2 weeks ago
- Bypass LSA protection using the BYODLL technique☆152Updated 2 months ago
- "Service-less" driver loading☆143Updated 2 weeks ago
- Dirty PoC on how to abuse S1's VEH for Vectored Syscalls and Local Execution☆40Updated 5 months ago
- Curated list of public Beacon Object Files(BOFs) build in as submodules for easy cloning☆106Updated this week
- reflectively load and execute PEs locally and remotely bypassing EDR hooks☆149Updated 11 months ago
- Malware?☆69Updated 2 months ago
- Encode shellcode into dictionary words for evasion and entropy reduction☆21Updated last month
- ApexLdr is a DLL Payload Loader written in C☆104Updated 5 months ago
- Shellcode loader using direct syscalls via Hell's Gate and payload encryption.☆82Updated 6 months ago
- ☆96Updated last year
- Mythic C2 Agent written in x64 PIC C☆60Updated 2 weeks ago