Vith0r / Patch-AmsiLinks
Bypassing amsi.dll via memory patch, simple code!
☆12Updated 9 months ago
Alternatives and similar repositories for Patch-Amsi
Users that are interested in Patch-Amsi are comparing it to the libraries listed below
Sorting:
- Indirect Syscalls Loader☆16Updated 9 months ago
- ☆17Updated 3 months ago
- ☆41Updated 10 months ago
- Windows syscall SDK with dynamic offset resolution, validation, obfuscation, and multi language bindings. Bypass API hooks across differe…☆40Updated this week
- ☆16Updated 3 months ago
- Process hollowing C# shellcode runner that is FUD against Microsoft Defender as of October 7, 2023.☆20Updated last year
- Collection of different rootkit functionality, each driver representing a different rootkit component☆11Updated 2 months ago
- ☆120Updated 9 months ago
- Windows rootkit designed to work with BYOVD exploits☆204Updated 6 months ago
- Code execution/injection technique using DLL PEB module structure manipulation☆155Updated 2 months ago
- A tool to transform Chromium browsers into a C2 Implant☆130Updated last week
- Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) Phan…☆269Updated 10 months ago
- kernel callback removal (Bypassing EDR Detections)☆184Updated 4 months ago
- NCrypt portable crypter is a collection of C++ build tools, a tiny C compiler for the stub, and a useful codebase for anyone wanting to c…☆10Updated last year
- Stack Spoofing with Synthetic frames based on the work of namazso, SilentMoonWalk, and VulcanRaven☆235Updated 9 months ago
- Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths☆351Updated last year
- Collect Windows telemetry for Maldev☆394Updated last week
- Metamorphic engine written in Rust.☆16Updated 3 years ago
- Implementing the ghostly hollowing PE injection technique using tampered syscalls.☆168Updated 5 months ago
- ☆189Updated last year
- BSides Prishtina 2024 Malware Development and Persistence workshop☆88Updated 2 months ago
- early cascade injection PoC based on Outflanks blog post☆227Updated 9 months ago
- This comprehensive and central repository is designed for cybersecurity enthusiasts, researchers, and professionals seeking to stay ahead…☆125Updated 2 months ago
- This is a collection of RATs for educational purposes☆46Updated last week
- ☆118Updated 5 months ago
- My POC implementation of HVNC (Hidden VNC / Hidden Desktop)☆26Updated 7 months ago
- ☆347Updated 2 months ago
- ☆38Updated last year
- A PoC for Early Cascade process injection technique.☆189Updated 6 months ago
- A runtime Crypter written in C++ to bypass AVs signature based detection☆34Updated 2 years ago