Former UEFI Firmware Rootkit Replicating MoonBounce / ESPECTRE
☆11Jun 14, 2022Updated 3 years ago
Alternatives and similar repositories for bootdoor
Users that are interested in bootdoor are comparing it to the libraries listed below
Sorting:
- My try to implement a virtual CPU in C☆19Nov 18, 2023Updated 2 years ago
- windows内核安全与驱动开发代码☆12Apr 4, 2020Updated 5 years ago
- Here i will upload every prynt stealer stub source code and you will discover that is stormkitty 0_0 (I didnt buy anything from prynt whi…☆11Jan 8, 2023Updated 3 years ago
- Source Code of MSIL Ransom☆14Feb 11, 2023Updated 3 years ago
- 关闭恶意驱动的文件和注册表保护☆14Jun 28, 2022Updated 3 years ago
- ☆12Feb 28, 2022Updated 4 years ago
- It's what all the kids are talking about☆12Apr 25, 2023Updated 2 years ago
- ☆15Feb 9, 2022Updated 4 years ago
- Launch a Windows EXE file with this EXE file (application filter evasion)☆15Mar 10, 2017Updated 8 years ago
- This POC provides the possibilty to execute x86 shellcode in form of a .bin file based on x86 inline assembly☆20Apr 17, 2023Updated 2 years ago
- Deobfuscation and Analysis of Ring-1.io☆69Feb 7, 2026Updated 3 weeks ago
- Register a callback from a Manually mapped kernel module☆16Feb 1, 2022Updated 4 years ago
- ☆19May 24, 2022Updated 3 years ago
- This project is created for research into antivirus evasion by unhooking.☆18Sep 2, 2021Updated 4 years ago
- Using the peculiar behaviour of the VPGATHER instructions to determine if an address will fault before it is truly accessed. All done in …☆54Dec 30, 2025Updated 2 months ago
- Socks Proxy Server Plugin for Invoke-SocksProxy☆18Mar 24, 2025Updated 11 months ago
- Loading and executing shellcode in C# without PInvoke.☆22Jan 10, 2022Updated 4 years ago
- Virtualization Simply Code☆25May 13, 2022Updated 3 years ago
- ☆25Apr 28, 2024Updated last year
- A Simple PoC☆22May 24, 2024Updated last year
- C Header Only Library for Virii☆11Nov 17, 2020Updated 5 years ago
- SharpElevator is a C# implementation of Elevator for UAC bypass. This UAC bypass was originally discovered by James Forshaw and publishe…☆61Aug 31, 2022Updated 3 years ago
- A simple and heavily documented series of test hypervisors built for 64-bit Windows 10 systems running under Intel's VT-x☆34Dec 27, 2020Updated 5 years ago
- Repository of vulnerabilities disclosed by ESET☆29Jul 13, 2022Updated 3 years ago
- call gates as stable comunication channel for NT x86 and Linux x86_64☆32Aug 11, 2023Updated 2 years ago
- A library to parse, modify, and implement Malleable C2 profiles☆27Feb 9, 2019Updated 7 years ago
- ☆23May 23, 2024Updated last year
- ☆10Sep 11, 2021Updated 4 years ago
- Chrome Password Decryptor☆26Nov 16, 2021Updated 4 years ago
- A simple PoC to invoke an encrypted shellcode by using an hidden call☆116Nov 19, 2022Updated 3 years ago
- ☆30Aug 24, 2025Updated 6 months ago
- IAT Unhooking proof-of-concept☆34Apr 7, 2024Updated last year
- Obfuscate calls to imports by patching in stubs☆72Aug 4, 2021Updated 4 years ago
- Perun's Fart (Slavic God's Luck). Another method for unhooking AV and EDR, this is my C# version.☆117Dec 26, 2021Updated 4 years ago
- Interceptor is a kernel driver focused on tampering with EDR/AV solutions in kernel space☆136Jan 2, 2023Updated 3 years ago
- Harness to issue Virtual Secure Mode (VSM) "secure calls" from VTL 0 to VTL 1☆76Sep 8, 2025Updated 5 months ago
- JALSI - Just Another Lame Shellcode Injector☆30Aug 1, 2021Updated 4 years ago
- Hooking the GDT - Installing a Call Gate. POC for Rootkit Arsenal Book Second Edition (version 2022)☆73Aug 11, 2023Updated 2 years ago
- idk man this was the default github name☆35Apr 23, 2023Updated 2 years ago