Offensive-Panda / WPM-MAJIC-ENTRY-POINT-INJECTION
This exploit is utilising AddressOfEntryPoint of process which is RX and using WriteProcessMemory internal magic to change the permission and write the shellcode.
☆15Updated 2 months ago
Alternatives and similar repositories for WPM-MAJIC-ENTRY-POINT-INJECTION:
Users that are interested in WPM-MAJIC-ENTRY-POINT-INJECTION are comparing it to the libraries listed below
- All my POC related to malware development☆11Updated 8 months ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆18Updated last year
- Cobalt Strike notifications via NTFY.☆13Updated 3 months ago
- Example of using Sleep to create better named pipes.☆41Updated last year
- Extension functionality for the NightHawk operator client☆26Updated last year
- Hooked create process injection for meterpreter☆23Updated 3 years ago
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆24Updated 4 months ago
- .NET port of Leron Gray's azbelt tool.☆26Updated last year
- Beacon Object File implementation of Yaxser's Backstab☆14Updated 2 years ago
- Unhook Ntdll.dll, Go & C++.☆13Updated 6 months ago
- Self Delete DLL☆23Updated 11 months ago
- Creation and removal of Defender path exclusions and exceptions in C#.☆30Updated last year
- A post-exploitation strategy for persistence and egress from networks utilizing authenticated web proxies☆32Updated 2 years ago
- A simple rpc2socks alternative in pure Go.☆26Updated 6 months ago
- shell code example☆17Updated 2 weeks ago
- A pure C version of SymProcAddress☆24Updated 10 months ago
- A Cobalt Strike payload generator and lateral movement aggressor script which places Beacon shellcode into a custom shellcode loader☆20Updated 3 months ago
- Bunch of BOF files☆26Updated last month
- This project is an EDRSandblast fork, adding some features and custom pieces of code.☆21Updated last year
- ☆18Updated 3 months ago
- ☆18Updated last month
- Just another Process Injection using Process Hollowing technique.☆16Updated last year
- ☆24Updated 2 years ago
- Extension functionality for the NightHawk operator client☆26Updated last year
- ☆28Updated 5 months ago
- BadExclusions is a tool to identify folder custom or undocumented exclusions on AV/EDR☆19Updated 11 months ago
- string/file/shellcode encryptor using AES/XOR☆11Updated last year
- Cobalt Strike Beacon Object File to enable the webdav client service on x64 windows hosts☆17Updated last year