SecurityTimes / Process-Injection
☆13Updated 4 years ago
Alternatives and similar repositories for Process-Injection
Users that are interested in Process-Injection are comparing it to the libraries listed below
Sorting:
- This script is used to unload PsSetCreateProcessNotifyRoutineEx, PsSetCreateProcessNotifyRoutine, PsSetLoadImageNotifyRoutine and PsSetCr…☆63Updated last year
- Proof of concept Beacon Object File (BOF) that attempts to detect userland hooks in place by AV/EDR☆159Updated 3 years ago
- Patch AMSI and ETW in remote process via direct syscall☆81Updated 3 years ago
- Herpaderply Hollowing - a PE injection technique, hybrid between Process Hollowing and Process Herpaderping☆56Updated 2 years ago
- Titan: A crappy Reflective Loader written in C and assembly for Cobalt Strike. Redirects DNS Beacon over DoH☆48Updated 3 years ago
- ZwProcessHollowing is a x64 process hollowing project which uses direct systemcalls, dll unhooking and RC4 payload decryption☆84Updated 2 years ago
- Deleting Shadow Copies In Pure C++☆114Updated 2 years ago
- Single stub direct and indirect syscalling with runtime SSN resolving for windows.☆135Updated 2 years ago
- Code used in this post https://captmeelo.com/redteam/maldev/2022/04/21/kernelcallbacktable-injection.html☆124Updated 3 years ago
- Get your data from the resource section manually, with no need for windows apis☆62Updated 6 months ago
- Minimal PoC developed as discuss in https://captmeelo.com/redteam/maldev/2022/05/10/ntcreateuserprocess.html☆137Updated 3 years ago
- Inject shellcode to process using Windows NTAPI for bypassing EDRs and Antiviruses☆41Updated 4 years ago
- Files for http://blog.deniable.org/posts/windows-callbacks/☆75Updated 3 years ago
- Example code for using named pipe output with beacon ReflectiveDLLs☆119Updated 4 years ago
- Halos Gate-based NTAPI Unhooker☆52Updated 3 years ago
- LdrLoadDll Unhooking☆127Updated 3 years ago
- Evasive Process Hollowing Techniques☆139Updated 4 years ago
- A reimplementation of Cobalt Strike's Beacon Object File (BOF) Loader☆48Updated last year
- ☆115Updated 2 years ago
- ☆49Updated 2 years ago
- Building and Executing Position Independent Shellcode from Object Files in Memory☆156Updated 4 years ago
- ☆42Updated 2 years ago
- Cobalt Strike BOF that uses a custom ASM HalosGate & HellsGate syscaller to return a list of processes☆106Updated 2 years ago
- A PoC project for embedding shellcode to Hint/Name Table☆111Updated 3 years ago
- The code is a pingback to the Dark Vortex blog:☆173Updated 2 years ago
- Template-based generation of shellcode loaders☆77Updated last year
- ☆136Updated last year
- Various methods of executing shellcode☆70Updated 2 years ago
- Section Mapping Process Injection (secinject): Cobalt Strike BOF☆95Updated 3 years ago
- Mochi is a proof-of-concept C++ loader that leverages the ChaiScript embedded scripting language to execute code.☆101Updated 3 years ago