OmerYa / ROPInjector
Rite Of Passage ROP Injector
☆34Updated 5 years ago
Alternatives and similar repositories for ROPInjector:
Users that are interested in ROPInjector are comparing it to the libraries listed below
- Recreating and reviewing the Windows persistence methods☆39Updated 3 years ago
- ☆31Updated 4 years ago
- A small commented POC for removing API hooks placed by AV/EDR.☆33Updated 4 years ago
- A collection of shellcode hashes☆17Updated 6 years ago
- "An Introduction to Windows Exploit Development" is an open sourced, free Windows exploit development course I created for the Southeast …☆39Updated 4 years ago
- ☆15Updated 4 years ago
- NT AUTHORITY\SYSTEM☆38Updated 4 years ago
- ☆36Updated 3 years ago
- Former Multi - Ring to Kernel To UserMode Transitional Shellcode For Remote Kernel Exploits☆28Updated 2 years ago
- A class to emulate the behavior of NtQuerySystemInformation when passed the SystemHypervisorDetailInformation information class☆24Updated last year
- Designed to learn OS specific anti-emulation patterns by fuzzing the Windows API.☆96Updated 4 years ago
- ☆14Updated 2 years ago
- Manually perform syscalls without going through any external API or DLL.☆17Updated last year
- Clone running process with ZwCreateProcess☆58Updated 4 years ago
- Local OXID Resolver (LCLOR) : Research and Tooling☆34Updated 3 years ago
- A simple dumper as FreshyCalls' PoC. That's what's trendy, isn't it? ¯\_(ツ)_/¯☆39Updated 4 years ago
- A multi-staged malware that contains a kernel mode rootkit and a remote system shell.☆71Updated 3 years ago
- Process Injection without R/W target memory and without creating a remote thread☆19Updated 2 years ago
- ☆18Updated 3 years ago
- ☆37Updated 3 years ago
- Extract data of TTD trace file to a minidump☆28Updated last year
- A repository where I share my injection implemintations☆29Updated 4 years ago
- Windows GPU rootkit PoC by Team Jellyfish☆35Updated 9 years ago
- A modified RunPE (process hollowing) technique avoiding the usage of SetThreadContext by appending a TLS section which calls the original…☆93Updated 5 years ago
- Enabled / Disable LSA Protection via BYOVD☆65Updated 3 years ago